2025 CVE Vulnerabilities
45,326 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-7652 | MEDIUM | 6.4 | 0.2% | Oct 11, 2025 | The Easy Plugin Stats plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'eps' shortcode... |
| CVE-2025-58301 | MEDIUM | 5.5 | 0.1% | Oct 11, 2025 | Buffer overflow vulnerability in the device management module. Successful exploitation of this vulnerability may affect ... |
| CVE-2025-58300 | MEDIUM | 5.5 | 0.1% | Oct 11, 2025 | Buffer overflow vulnerability in the device management module. Successful exploitation of this vulnerability may affect ... |
| CVE-2025-58293 | MEDIUM | 5.5 | 0.1% | Oct 11, 2025 | Vulnerability of improper exception handling in the print module. Successful exploitation of this vulnerability may affe... |
| CVE-2025-58289 | MEDIUM | 5.5 | 0.1% | Oct 11, 2025 | Vulnerability of improper exception handling in the print module. Successful exploitation of this vulnerability may affe... |
| CVE-2025-10376 | MEDIUM | 4.3 | 0.1% | Oct 11, 2025 | The Course Redirects for Learndash plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up t... |
| CVE-2025-10375 | MEDIUM | 4.3 | 0.2% | Oct 11, 2025 | The Web Accessibility By accessiBe plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up t... |
| CVE-2025-10190 | MEDIUM | 6.4 | 0.2% | Oct 11, 2025 | The WP Easy Toggles plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'toggles' shortco... |
| CVE-2025-10175 | MEDIUM | 6.5 | 0.4% | Oct 11, 2025 | The WP Links Page plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter in all versions up to, and ... |
| CVE-2025-10167 | MEDIUM | 6.4 | 0.2% | Oct 11, 2025 | The Stock History & Reports Manager for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting vi... |
| CVE-2025-10129 | MEDIUM | 6.4 | 0.2% | Oct 11, 2025 | The WordPress Live Webcam Widget & Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the p... |
| CVE-2025-58299 | MEDIUM | 5.5 | 0.1% | Oct 11, 2025 | Use After Free (UAF) vulnerability in the storage management module. Successful exploitation of this vulnerability may a... |
| CVE-2025-58298 | MEDIUM | 5.5 | 0.1% | Oct 11, 2025 | Data processing error vulnerability in the package management module. Successful exploitation of this vulnerability may ... |
| CVE-2025-58297 | MEDIUM | 5.5 | 0.1% | Oct 11, 2025 | Buffer overflow vulnerability in the sensor service. Successful exploitation of this vulnerability may affect availabili... |
| CVE-2025-58295 | MEDIUM | 5.5 | 0.1% | Oct 11, 2025 | Buffer overflow vulnerability in the development framework module. Successful exploitation of this vulnerability may aff... |
| CVE-2025-58292 | MEDIUM | 5.5 | 0.1% | Oct 11, 2025 | Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect av... |
| CVE-2025-58291 | MEDIUM | 5.5 | 0.1% | Oct 11, 2025 | Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect av... |
| CVE-2025-58290 | MEDIUM | 5.5 | 0.1% | Oct 11, 2025 | Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect av... |
| CVE-2025-58288 | MEDIUM | 5.5 | 0.1% | Oct 11, 2025 | Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect av... |
| CVE-2025-58287 | MEDIUM | 5.5 | 0.1% | Oct 11, 2025 | Use After Free (UAF) vulnerability in the office service. Successful exploitation of this vulnerability may affect servi... |
| CVE-2025-58286 | MEDIUM | 5.5 | 0.1% | Oct 11, 2025 | Denial of service (DoS) vulnerability in the office service. Successful exploitation of this vulnerability may affect av... |
| CVE-2025-11594 | MEDIUM | 5.5 | 0.3% | Oct 11, 2025 | A vulnerability has been found in ywxbear PHP-Bookstore-Website-Example and PHP Basic BookStore Website up to 0e0b9f542f... |
| CVE-2025-11518 | MEDIUM | 5.3 | 0.2% | Oct 11, 2025 | The WPC Smart Wishlist for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in all ver... |
| CVE-2025-11254 | MEDIUM | 4.3 | 0.3% | Oct 11, 2025 | The Contest Gallery – Upload, Vote & Sell with PayPal and Stripe plugin for WordPress is vulnerable to CSV Injection in ... |
| CVE-2025-11167 | MEDIUM | 4.7 | 0.2% | Oct 11, 2025 | The CM Registration – Tailored tool for seamless login and invitation-based registrations plugin for WordPress is vulner... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now