2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-68855 | MEDIUM | 5.9 | 0.3% | Feb 20, 2026 | Insertion of Sensitive Information Into Sent Data vulnerability in themeglow JobBoard Job listing job-board-light allows... |
| CVE-2025-68837 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in ELEXtensions ELEX WordPress HelpDesk & Customer Ticketing System elex-helpdesk-cu... |
| CVE-2025-68564 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in sendy Sendy sendy allows Exploiting Incorrectly Configured Access Control Securit... |
| CVE-2025-68542 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in vgdevsolutions Checkout Gateway for IRIS checkout-gateway-iris allows Exploiting ... |
| CVE-2025-68534 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in add-ons.org PDF for WPForms pdf-for-wpforms allows Exploiting Incorrectly Configu... |
| CVE-2025-68514 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Authorization Bypass Through User-Controlled Key vulnerability in Cozmoslabs Paid Member Subscriptions paid-member-subsc... |
| CVE-2025-68050 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in Leadpages Leadpages leadpages allows Exploiting Incorrectly Configured Access Con... |
| CVE-2025-68042 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in Travelpayouts Travelpayouts travelpayouts allows Exploiting Incorrectly Configure... |
| CVE-2025-68032 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in Passionate Brains Advanced WC Analytics advance-wc-analytics allows Exploiting In... |
| CVE-2025-68028 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in Passionate Brains GA4WP: Google Analytics for WordPress ga-for-wp allows Exploiti... |
| CVE-2025-68026 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in Niaj Morshed LC Wizard ghl-wizard allows Exploiting Incorrectly Configured Access... |
| CVE-2025-68025 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in Addonify Addonify Floating Cart For WooCommerce addonify-floating-cart allows Exp... |
| CVE-2025-68024 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in Addonify Addonify – WooCommerce Wishlist addonify-wishlist allows Exploiting Inco... |
| CVE-2025-68023 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in Addonify Addonify – Compare Products For WooCommerce addonify-compare-products al... |
| CVE-2025-68021 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in ConveyThis ConveyThis conveythis-translate allows Exploiting Incorrectly Configur... |
| CVE-2025-68005 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in themewant Easy Hotel Booking easy-hotel allows Exploiting Incorrectly Configured ... |
| CVE-2025-68002 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in 100plugins Open User Map... |
| CVE-2025-68000 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in PickPlugins Testimonial Slider testimonial allows Exploiting Incorrectly Configur... |
| CVE-2025-67993 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in Vito Peleg Atarim atarim-visual-collaboration allows Exploiting Incorrectly Confi... |
| CVE-2025-67975 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in aDirectory aDirectory adirectory allows Exploiting Incorrectly Configured Access ... |
| CVE-2025-67973 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart allows Exploiting Incor... |
| CVE-2025-67972 | MEDIUM | 4.3 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in Zoho Mail Zoho ZeptoMail allows Exploiting Incorrectly Configured Access Control ... |
| CVE-2025-67970 | MEDIUM | 5.9 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in vertim Schedula schedula-smart-appointment-booking allows Exploiting Incorrectly ... |
| CVE-2025-67969 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in knitpay UPI QR Code Payment Gateway for WooCommerce upi-qr-code-payment-for-wooco... |
| CVE-2025-67624 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in Arya Dhiratara Optimize More! – Images optimize-more-images allows Exploiting Inc... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now