2025 CVE Vulnerabilities
45,152 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-33034 | MEDIUM | 6.5 | 0.4% | Oct 3, 2025 | A path traversal vulnerability has been reported to affect Qsync Central. If a remote attacker gains a user account, the... |
| CVE-2025-57423 | MEDIUM | 6.5 | 0.4% | Oct 3, 2025 | A SQL injection vulnerability was discovered in the /articles endpoint of MyClub 0.5, affecting the query parameters Con... |
| CVE-2025-55971 | MEDIUM | 4.7 | 0.3% | Oct 3, 2025 | TCL 65C655 Smart TV, running firmware version V8-R75PT01-LF1V269.001116 (Android TV, Kernel 5.4.242+), is vulnerable to ... |
| CVE-2025-60454 | MEDIUM | 6.1 | 0.2% | Oct 3, 2025 | A stored Cross-Site Scripting (XSS) vulnerability has been discovered in MetInfo CMS version 8.0. The vulnerability exis... |
| CVE-2025-60453 | MEDIUM | 6.1 | 0.2% | Oct 3, 2025 | A stored Cross-Site Scripting (XSS) vulnerability has been discovered in MetInfo CMS version 8.0. The vulnerability exis... |
| CVE-2025-60452 | MEDIUM | 6.1 | 0.2% | Oct 3, 2025 | A stored Cross-Site Scripting (XSS) vulnerability has been discovered in MetInfo CMS version 8.0. The vulnerability exis... |
| CVE-2025-60451 | MEDIUM | 6.1 | 0.2% | Oct 3, 2025 | A stored Cross-Site Scripting (XSS) vulnerability has been discovered in MetInfo CMS version 8.0. The vulnerability exis... |
| CVE-2025-60450 | MEDIUM | 6.1 | 0.2% | Oct 3, 2025 | A stored Cross-Site Scripting (XSS) vulnerability has been discovered in MetInfo CMS version 8.0. The vulnerability exis... |
| CVE-2025-60449 | MEDIUM | 4.9 | 0.3% | Oct 3, 2025 | An information disclosure vulnerability has been discovered in SeaCMS 13.1. The vulnerability exists in the admin_safe.p... |
| CVE-2025-60448 | MEDIUM | 6.1 | 0.2% | Oct 3, 2025 | A stored Cross-Site Scripting (XSS) vulnerability has been discovered in Emlog Pro 2.5.19. The vulnerability exists due ... |
| CVE-2025-60447 | MEDIUM | 5.9 | 0.2% | Oct 3, 2025 | A stored Cross-Site Scripting (XSS) vulnerability has been discovered in Emlog Pro 2.5.19. The vulnerability exists in t... |
| CVE-2025-60445 | MEDIUM | 6.1 | 0.2% | Oct 3, 2025 | A stored Cross-Site Scripting (XSS) vulnerability has been discovered in XunRuiCMS version 4.7.1. The vulnerability exis... |
| CVE-2025-10609 | MEDIUM | 5.9 | 0.1% | Oct 3, 2025 | Use of Hard-coded Credentials vulnerability in Logo Software Inc. TigerWings ERP allows Read Sensitive Constants Within ... |
| CVE-2025-9945 | MEDIUM | 4.3 | 0.1% | Oct 3, 2025 | The Optimize More! – CSS plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inc... |
| CVE-2025-9897 | MEDIUM | 4.3 | 0.1% | Oct 3, 2025 | The AP Background plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including,... |
| CVE-2025-9895 | MEDIUM | 4.3 | 0.1% | Oct 3, 2025 | The Notification Bar plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includi... |
| CVE-2025-9892 | MEDIUM | 5.3 | 0.1% | Oct 3, 2025 | The Restrict User Registration plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, a... |
| CVE-2025-9889 | MEDIUM | 4.3 | 0.2% | Oct 3, 2025 | The ContentMX Content Publisher plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, ... |
| CVE-2025-9885 | MEDIUM | 4.3 | 0.1% | Oct 3, 2025 | The MPWizard – Create Mercado Pago Payment Links plugin for WordPress is vulnerable to Cross-Site Request Forgery in all... |
| CVE-2025-9884 | MEDIUM | 6.1 | 0.1% | Oct 3, 2025 | The Mobile Site Redirect plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inc... |
| CVE-2025-9876 | MEDIUM | 6.4 | 0.2% | Oct 3, 2025 | The Ird Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'irdslider' shortcode ... |
| CVE-2025-9875 | MEDIUM | 6.4 | 0.2% | Oct 3, 2025 | The Event Tickets, RSVPs, Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 't... |
| CVE-2025-9859 | MEDIUM | 6.4 | 0.2% | Oct 3, 2025 | The Fintelligence Calculator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'fintell... |
| CVE-2025-9858 | MEDIUM | 6.4 | 0.2% | Oct 3, 2025 | The Auto Bulb Finder for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'a... |
| CVE-2025-9854 | MEDIUM | 6.4 | 0.2% | Oct 3, 2025 | The A Simple Multilanguage Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'as... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now