2025 CVE Vulnerabilities
45,347 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-52795 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in aharonyan WP Front User Submit / Front Editor front-editor allows Cro... |
| CVE-2025-52794 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Creative-Solutions Creative Contact Form sexy-contact-form allows Sto... |
| CVE-2025-52793 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Esselink.nu Esselink.nu Settings esselinknu-settings allows Reflected... |
| CVE-2025-52792 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in vgstef WP User Stylesheet Switcher wp-user-stylesheet-switcher allows... |
| CVE-2025-52791 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in devfelixmoira Knowledge Base – Knowledge Base Maker knowledge-base-ma... |
| CVE-2025-52790 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in r-win WP-DownloadCounter wp-downloadcounter allows Stored XSS.This is... |
| CVE-2025-52789 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in George Lewe Lewe ChordPress chordpress allows Stored XSS.This issue a... |
| CVE-2025-52784 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in hideoguchi Bluff Post bluff-post allows Stored XSS.This issue affects... |
| CVE-2025-52783 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in themelocation Change Cart button Colors WooCommerce wc-style allows S... |
| CVE-2025-52782 | HIGH | 7.1 | 0.2% | Jun 20, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in King Rayhan Scroll... |
| CVE-2025-52781 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Beee TinyNav tinynav allows Stored XSS.This issue affects TinyNav: fr... |
| CVE-2025-52780 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Mohammad Parsa Logo Manager For Samandehi samandehi-logo-manager allo... |
| CVE-2025-52772 | HIGH | 7.1 | 0.1% | Jun 20, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Adnan Haque (a11n) Virtual Moderator allows Cross-Site Scripting (XSS... |
| CVE-2025-52715 | HIGH | 7.5 | 0.4% | Jun 20, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-52708 | HIGH | 7.5 | 0.4% | Jun 20, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-49873 | HIGH | 7.1 | 0.2% | Jun 20, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NasaTheme Elessi e... |
| CVE-2025-48705 | HIGH | 7.5 | 0.4% | Jun 20, 2025 | An issue was discovered in COROS PACE 3 through 3.0808.0. Due to a NULL pointer dereference vulnerability, sending a cra... |
| CVE-2025-32879 | HIGH | 8.8 | 0.5% | Jun 20, 2025 | An issue was discovered on COROS PACE 3 devices through 3.0808.0. It starts advertising if no device is connected via Bl... |
| CVE-2025-32753 | HIGH | 7.8 | 0.2% | Jun 20, 2025 | Dell PowerScale OneFS, versions 9.5.0.0 through 9.10.0.1, contains an improper neutralization of special elements used i... |
| CVE-2025-6337 | HIGH | 8.8 | 0.8% | Jun 20, 2025 | A vulnerability was found in TOTOLINK A3002R and A3002RU 3.0.0-B20230809.1615/4.0.0-B20230531.1404. It has been declared... |
| CVE-2025-4102 | HIGH | 7.2 | 0.5% | Jun 20, 2025 | The Beaver Builder Plugin (Starter Version) plugin for WordPress is vulnerable to arbitrary file uploads due to missing ... |
| CVE-2025-6335 | HIGH | 7.2 | 6.9% | Jun 20, 2025 | A vulnerability was found in DedeCMS up to 5.7.2 and classified as critical. This issue affects some unknown processing ... |
| CVE-2025-6334 | HIGH | 8.8 | 0.7% | Jun 20, 2025 | A vulnerability has been found in D-Link DIR-867 1.0 and classified as critical. This vulnerability affects the function... |
| CVE-2025-6333 | HIGH | 8.8 | 0.3% | Jun 20, 2025 | A vulnerability, which was classified as critical, was found in PHPGurukul Directory Management System 2.0. This affects... |
| CVE-2025-6332 | HIGH | 8.8 | 0.3% | Jun 20, 2025 | A vulnerability, which was classified as critical, has been found in PHPGurukul Directory Management System 2.0. Affecte... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now