2025 CVE Vulnerabilities

45,326 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-7652MEDIUM6.4The Easy Plugin Stats plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'eps' shortcode...
CVE-2025-58301MEDIUM5.5Buffer overflow vulnerability in the device management module. Successful exploitation of this vulnerability may affect ...
CVE-2025-58300MEDIUM5.5Buffer overflow vulnerability in the device management module. Successful exploitation of this vulnerability may affect ...
CVE-2025-58293MEDIUM5.5Vulnerability of improper exception handling in the print module. Successful exploitation of this vulnerability may affe...
CVE-2025-58289MEDIUM5.5Vulnerability of improper exception handling in the print module. Successful exploitation of this vulnerability may affe...
CVE-2025-10376MEDIUM4.3The Course Redirects for Learndash plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up t...
CVE-2025-10375MEDIUM4.3The Web Accessibility By accessiBe plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up t...
CVE-2025-10190MEDIUM6.4The WP Easy Toggles plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'toggles' shortco...
CVE-2025-10175MEDIUM6.5The WP Links Page plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter in all versions up to, and ...
CVE-2025-10167MEDIUM6.4The Stock History & Reports Manager for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting vi...
CVE-2025-10129MEDIUM6.4The WordPress Live Webcam Widget & Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the p...
CVE-2025-58299MEDIUM5.5Use After Free (UAF) vulnerability in the storage management module. Successful exploitation of this vulnerability may a...
CVE-2025-58298MEDIUM5.5Data processing error vulnerability in the package management module. Successful exploitation of this vulnerability may ...
CVE-2025-58297MEDIUM5.5Buffer overflow vulnerability in the sensor service. Successful exploitation of this vulnerability may affect availabili...
CVE-2025-58295MEDIUM5.5Buffer overflow vulnerability in the development framework module. Successful exploitation of this vulnerability may aff...
CVE-2025-58292MEDIUM5.5Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect av...
CVE-2025-58291MEDIUM5.5Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect av...
CVE-2025-58290MEDIUM5.5Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect av...
CVE-2025-58288MEDIUM5.5Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect av...
CVE-2025-58287MEDIUM5.5Use After Free (UAF) vulnerability in the office service. Successful exploitation of this vulnerability may affect servi...
CVE-2025-58286MEDIUM5.5Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect av...
CVE-2025-11594MEDIUM5.5A vulnerability has been found in ywxbear PHP-Bookstore-Website-Example and PHP Basic BookStore Website up to 0e0b9f542f...
CVE-2025-11518MEDIUM5.3The WPC Smart Wishlist for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in all ver...
CVE-2025-11254MEDIUM4.3The Contest Gallery – Upload, Vote & Sell with PayPal and Stripe plugin for WordPress is vulnerable to CSV Injection in ...
CVE-2025-11167MEDIUM4.7The CM Registration – Tailored tool for seamless login and invitation-based registrations plugin for WordPress is vulner...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now