2025 CVE Vulnerabilities

45,331 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-11164MEDIUM4.3The Mavix Education theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability c...
CVE-2025-10738CRITICAL9.8The URL Shortener Plugin For WordPress plugin for WordPress is vulnerable to SQL Injection via the ‘analytic_id’ paramet...
CVE-2025-10289MEDIUM5.9The Filter & Grids plugin for WordPress is vulnerable to SQL Injection via the 'phrase' parameter in all versions up to,...
CVE-2025-0969MEDIUM6.5The Brizy – Page Builder plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and...
CVE-2025-13970HIGH8OpenPLC_V3 is vulnerable to a cross-site request forgery (CSRF) attack due to the absence of proper CSRF validation. Th...
CVE-2025-67749MEDIUM5.3PCSX2 is a free and open-source PlayStation 2 (PS2) emulator. In versions 2.5.377 and below, an unchecked offset and siz...
CVE-2025-67721HIGH7.5Aircompressor is a library with ports of the Snappy, LZO, LZ4, and Zstandard compression algorithms to Java. In versions...
CVE-2025-14585CRITICAL9.8A vulnerability was found in itsourcecode COVID Tracking System 1.0. Affected by this vulnerability is an unknown functi...
CVE-2025-14584CRITICAL9.8A vulnerability has been found in itsourcecode COVID Tracking System 1.0. Affected is an unknown function of the file /a...
CVE-2025-14066——Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2025-14583CRITICAL9.8A flaw has been found in campcodes Online Student Enrollment System 1.0. This impacts an unknown function of the file /a...
CVE-2025-14582HIGH7.2A vulnerability was detected in campcodes Online Student Enrollment System 1.0. This affects an unknown function of the ...
CVE-2025-67750HIGH8.4Lightning Flow Scanner provides a A CLI plugin, VS Code Extension and GitHub Action for analysis and optimization of Sal...
CVE-2025-67634MEDIUM6.1The CISA Software Acquisition Guide Supplier Response Web Tool before 2025-12-11 was vulnerable to cross-site scripting ...
CVE-2025-46289MEDIUM5.5A logic issue was addressed with improved file handling. This issue is fixed in macOS Sequoia 15.7.3, macOS Sonoma 14.8....
CVE-2025-46287MEDIUM6.5An inconsistent user interface issue was addressed with improved state management. This issue is fixed in iOS 18.7.3 and...
CVE-2025-46285HIGH7.8An integer overflow was addressed by adopting 64-bit timestamps. This issue is fixed in iOS 18.7.3 and iPadOS 18.7.3, iO...
CVE-2025-46276MEDIUM5.5An information disclosure issue was addressed with improved privacy controls. This issue is fixed in iOS 18.7.3 and iPad...
CVE-2025-43542HIGH7.5This issue was addressed with improved state management. This issue is fixed in iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 a...
CVE-2025-43539HIGH8.8The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.7.3 and iPadOS 18.7.3, iOS 26.2 and i...
CVE-2025-43538MEDIUM5.5A logging issue was addressed with improved data redaction. This issue is fixed in iOS 18.7.3 and iPadOS 18.7.3, iOS 26....
CVE-2025-43532LOW2.8A memory corruption issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.3 and iPadOS 18.7...
CVE-2025-43530MEDIUM5.5This issue was addressed with improved checks. This issue is fixed in iOS 18.7.3 and iPadOS 18.7.3, macOS Sequoia 15.7.3...
CVE-2025-43527HIGH7.8A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.3, macOS Tahoe...
CVE-2025-43523MEDIUM5.5A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.7.3, macOS Tahoe...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now