2025 CVE Vulnerabilities
45,145 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-66087 | MEDIUM | 4.3 | 0.2% | Nov 21, 2025 | Missing Authorization vulnerability in Property Hive PropertyHive propertyhive allows Exploiting Incorrectly Configured ... |
| CVE-2025-66086 | MEDIUM | 5.3 | 0.2% | Nov 21, 2025 | Missing Authorization vulnerability in Cozy Vision SMS Alert Order Notifications sms-alert allows Exploiting Incorrectly... |
| CVE-2025-66085 | MEDIUM | 4.3 | 0.2% | Nov 21, 2025 | Missing Authorization vulnerability in tychesoftwares Arconix Shortcodes arconix-shortcodes allows Exploiting Incorrectl... |
| CVE-2025-66084 | MEDIUM | 4.3 | 0.2% | Nov 21, 2025 | Missing Authorization vulnerability in Shahjahan Jewel FluentCommunity fluent-community allows Exploiting Incorrectly Co... |
| CVE-2025-66083 | MEDIUM | 5.3 | 0.2% | Nov 21, 2025 | Missing Authorization vulnerability in magepeopleteam WpEvently mage-eventpress allows Exploiting Incorrectly Configured... |
| CVE-2025-66082 | MEDIUM | 5.3 | 0.2% | Nov 21, 2025 | Missing Authorization vulnerability in magepeopleteam WpEvently mage-eventpress allows Exploiting Incorrectly Configured... |
| CVE-2025-66081 | MEDIUM | 5.9 | 0.2% | Nov 21, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jeff Starr Head Me... |
| CVE-2025-66079 | MEDIUM | 6.5 | 0.3% | Nov 21, 2025 | Missing Authorization vulnerability in Jegstudio Gutenverse Form gutenverse-form allows Exploiting Incorrectly Configure... |
| CVE-2025-66077 | MEDIUM | 5.3 | 0.2% | Nov 21, 2025 | Missing Authorization vulnerability in wpWax Legal Pages legal-pages allows Exploiting Incorrectly Configured Access Con... |
| CVE-2025-66075 | MEDIUM | 4.3 | 0.2% | Nov 21, 2025 | Missing Authorization vulnerability in WP Legal Pages WP Cookie Notice for GDPR, CCPA & ePrivacy Consent gdpr-cookie-con... |
| CVE-2025-66072 | MEDIUM | 5.3 | 0.2% | Nov 21, 2025 | Missing Authorization vulnerability in Stiofan UsersWP userswp allows Exploiting Incorrectly Configured Access Control S... |
| CVE-2025-66071 | MEDIUM | 5.3 | 0.3% | Nov 21, 2025 | Missing Authorization vulnerability in tychesoftwares Custom Order Numbers for WooCommerce custom-order-numbers-for-wooc... |
| CVE-2025-66069 | MEDIUM | 4.3 | 0.2% | Nov 21, 2025 | Missing Authorization vulnerability in Themeisle PPOM for WooCommerce woocommerce-product-addon allows Exploiting Incorr... |
| CVE-2025-66067 | MEDIUM | 6.5 | 0.2% | Nov 21, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Aman Funnel Builde... |
| CVE-2025-66066 | MEDIUM | 6.5 | 0.2% | Nov 21, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in EnvoThemes Envo Ex... |
| CVE-2025-66065 | MEDIUM | 6.5 | 0.2% | Nov 21, 2025 | Missing Authorization vulnerability in Jegstudio Gutenverse gutenverse allows Exploiting Incorrectly Configured Access C... |
| CVE-2025-66064 | MEDIUM | 4.3 | 0.1% | Nov 21, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Syed Balkhi Giveaways and Contests by RafflePress rafflepress allows ... |
| CVE-2025-66063 | MEDIUM | 5.4 | 0.2% | Nov 21, 2025 | Missing Authorization vulnerability in jgwhite33 WP Google Review Slider wp-google-places-review-slider allows Exploitin... |
| CVE-2025-66061 | MEDIUM | 4.3 | 0.1% | Nov 21, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Craig Hewitt Seriously Simple Podcasting seriously-simple-podcasting ... |
| CVE-2025-66060 | MEDIUM | 5.3 | 0.2% | Nov 21, 2025 | Missing Authorization vulnerability in Craig Hewitt Seriously Simple Podcasting seriously-simple-podcasting allows Explo... |
| CVE-2025-66059 | MEDIUM | 5.3 | 0.2% | Nov 21, 2025 | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Craig Hewitt Seriously Simpl... |
| CVE-2025-66057 | MEDIUM | 6.5 | 0.2% | Nov 21, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Pa... |
| CVE-2025-66056 | MEDIUM | 4.3 | 0.2% | Nov 21, 2025 | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Uncanny Owl Uncanny Automato... |
| CVE-2025-66053 | MEDIUM | 6.5 | 0.2% | Nov 21, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Kriesi Enfold enfo... |
| CVE-2025-12935 | MEDIUM | 6.4 | 0.3% | Nov 21, 2025 | The FluentCRM – Email Newsletter, Automation, Email Marketing, Email Campaigns, Optins, Leads, and CRM Solution plugin f... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now