2025 CVE Vulnerabilities
45,320 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-68050 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in Leadpages Leadpages leadpages allows Exploiting Incorrectly Configured Access Con... |
| CVE-2025-68042 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in Travelpayouts Travelpayouts travelpayouts allows Exploiting Incorrectly Configure... |
| CVE-2025-68032 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in Passionate Brains Advanced WC Analytics advance-wc-analytics allows Exploiting In... |
| CVE-2025-68028 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in Passionate Brains GA4WP: Google Analytics for WordPress ga-for-wp allows Exploiti... |
| CVE-2025-68026 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in Niaj Morshed LC Wizard ghl-wizard allows Exploiting Incorrectly Configured Access... |
| CVE-2025-68025 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in Addonify Addonify Floating Cart For WooCommerce addonify-floating-cart allows Exp... |
| CVE-2025-68024 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in Addonify Addonify – WooCommerce Wishlist addonify-wishlist allows Exploiting Inco... |
| CVE-2025-68023 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in Addonify Addonify – Compare Products For WooCommerce addonify-compare-products al... |
| CVE-2025-68021 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in ConveyThis ConveyThis conveythis-translate allows Exploiting Incorrectly Configur... |
| CVE-2025-68005 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in themewant Easy Hotel Booking easy-hotel allows Exploiting Incorrectly Configured ... |
| CVE-2025-68002 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in 100plugins Open User Map... |
| CVE-2025-68000 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in PickPlugins Testimonial Slider testimonial allows Exploiting Incorrectly Configur... |
| CVE-2025-67993 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in Vito Peleg Atarim atarim-visual-collaboration allows Exploiting Incorrectly Confi... |
| CVE-2025-67975 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in aDirectory aDirectory adirectory allows Exploiting Incorrectly Configured Access ... |
| CVE-2025-67973 | MEDIUM | 6.5 | 0.2% | Feb 20, 2026 | Missing Authorization vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart allows Exploiting Incor... |
| CVE-2025-67972 | MEDIUM | 4.3 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in Zoho Mail Zoho ZeptoMail allows Exploiting Incorrectly Configured Access Control ... |
| CVE-2025-67970 | MEDIUM | 5.9 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in vertim Schedula schedula-smart-appointment-booking allows Exploiting Incorrectly ... |
| CVE-2025-67969 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in knitpay UPI QR Code Payment Gateway for WooCommerce upi-qr-code-payment-for-wooco... |
| CVE-2025-67624 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in Arya Dhiratara Optimize More! – Images optimize-more-images allows Exploiting Inc... |
| CVE-2025-67547 | MEDIUM | 6.5 | 0.3% | Feb 20, 2026 | Missing Authorization vulnerability in uixthemes Konte konte allows Exploiting Incorrectly Configured Access Control Sec... |
| CVE-2025-67438 | MEDIUM | 6.1 | 0.3% | Feb 20, 2026 | A Stored Cross-Site Scripting (XSS) vulnerability in Sync-in Server before 1.9.3 allows an authenticated attacker to exe... |
| CVE-2025-60183 | MEDIUM | 5.9 | 0.2% | Feb 20, 2026 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in silence Silencesof... |
| CVE-2025-59819 | MEDIUM | 6.5 | 0.4% | Feb 20, 2026 | This vulnerability allows authenticated attackers to read an arbitrary file by changing a filepath parameter into an int... |
| CVE-2025-9208 | MEDIUM | 5.4 | 0.2% | Feb 19, 2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in OpenText™ W... |
| CVE-2025-8055 | MEDIUM | 5.3 | 0.2% | Feb 19, 2026 | Server-Side Request Forgery (SSRF) vulnerability in OpenText™ XM Fax allows Server Side Request Forgery. The vulnerabi... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now