2025 CVE Vulnerabilities
45,169 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-10065 | MEDIUM | 6.1 | 0.4% | Sep 7, 2025 | A weakness has been identified in itsourcecode POS Point of Sale System 1.0. Impacted is an unknown function of the file... |
| CVE-2025-10064 | MEDIUM | 6.1 | 0.4% | Sep 7, 2025 | A security flaw has been discovered in itsourcecode POS Point of Sale System 1.0. This issue affects some unknown proces... |
| CVE-2025-10063 | MEDIUM | 6.1 | 0.4% | Sep 6, 2025 | A vulnerability was identified in itsourcecode POS Point of Sale System 1.0. This vulnerability affects unknown code of ... |
| CVE-2025-0034 | MEDIUM | 4.7 | 0.1% | Sep 6, 2025 | Insufficient parameter sanitization in TEE SOC Driver could allow an attacker to issue a malformed DRV_SOC_CMD_ID_SRIOV_... |
| CVE-2025-0010 | MEDIUM | 6.1 | 0.1% | Sep 6, 2025 | An out of bounds write in the Linux graphics driver could allow an attacker to overflow the buffer potentially resulting... |
| CVE-2025-0009 | MEDIUM | 5.5 | 0.1% | Sep 6, 2025 | A NULL pointer dereference in AMD Crash Defender could allow an attacker to write a NULL output to a log file potentiall... |
| CVE-2025-10032 | MEDIUM | 6.1 | 0.4% | Sep 6, 2025 | A vulnerability was detected in Campcodes Grocery Sales and Inventory System 1.0. The affected element is an unknown fun... |
| CVE-2025-10029 | MEDIUM | 6.1 | 0.3% | Sep 6, 2025 | A security flaw has been discovered in itsourcecode POS Point of Sale System 1.0. This vulnerability affects unknown cod... |
| CVE-2025-10046 | MEDIUM | 4.9 | 0.7% | Sep 6, 2025 | The ELEX WooCommerce Google Shopping (Google Product Feed) plugin for WordPress is vulnerable to SQL Injection via the '... |
| CVE-2025-10028 | MEDIUM | 6.1 | 0.3% | Sep 6, 2025 | A vulnerability was identified in itsourcecode POS Point of Sale System 1.0. This affects an unknown part of the file /i... |
| CVE-2025-6757 | MEDIUM | 6.4 | 0.2% | Sep 6, 2025 | The Recent Posts Widget Extended plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'rpw... |
| CVE-2025-9493 | MEDIUM | 6.4 | 0.2% | Sep 6, 2025 | The Admin Menu Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘placeholder’ parameter ... |
| CVE-2025-9442 | MEDIUM | 6.4 | 0.2% | Sep 6, 2025 | The StreamWeasels Kick Integration plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘vodsChanne... |
| CVE-2025-9126 | MEDIUM | 6.4 | 0.2% | Sep 6, 2025 | The Smart Table Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘id’ parameter in all ... |
| CVE-2025-8722 | MEDIUM | 6.4 | 0.2% | Sep 6, 2025 | The Content Views plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Grid and List widge... |
| CVE-2025-8564 | MEDIUM | 6.4 | 0.2% | Sep 6, 2025 | The SKT Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple widgets in a... |
| CVE-2025-8149 | MEDIUM | 6.4 | 0.2% | Sep 6, 2025 | The aThemes Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Coun... |
| CVE-2025-7045 | MEDIUM | 6.5 | 0.4% | Sep 6, 2025 | The Cloud SAML SSO plugin for WordPress is vulnerable to Identity Provider Deletion due to a missing capability check on... |
| CVE-2025-9853 | MEDIUM | 6.4 | 0.2% | Sep 6, 2025 | The Optio Dentistry plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'optio-lightbox' ... |
| CVE-2025-9085 | MEDIUM | 4.9 | 0.3% | Sep 6, 2025 | The User Registration & Membership plugin for WordPress is vulnerable to SQL Injection via the 's' parameter in version ... |
| CVE-2025-8360 | MEDIUM | 6.4 | 0.2% | Sep 6, 2025 | The LA-Studio Element Kit for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several of... |
| CVE-2025-10003 | MEDIUM | 6.5 | 0.3% | Sep 6, 2025 | The UsersWP – Front-end login form, User Registration, User Profile & Members Directory plugin for WordPress plugin for ... |
| CVE-2025-9849 | MEDIUM | 6.4 | 0.2% | Sep 6, 2025 | The Html Social share buttons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'zm_sh_... |
| CVE-2025-7368 | MEDIUM | 5.3 | 0.3% | Sep 6, 2025 | The REHub - Price Comparison, Multi Vendor Marketplace Wordpress Theme theme for WordPress is vulnerable to Information ... |
| CVE-2025-6067 | MEDIUM | 6.4 | 0.2% | Sep 6, 2025 | The Easy Social Feed – Social Photos Gallery – Post Feed – Like Box plugin for WordPress is vulnerable to Stored Cross-S... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now