2025 CVE Vulnerabilities

45,138 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-15147MEDIUM4.3The WCFM Membership – WooCommerce Memberships for Multivendor Marketplace plugin for WordPress is vulnerable to Insecure...
CVE-2025-15318MEDIUM6Tanium addressed an arbitrary file deletion vulnerability in End-User Notifications Endpoint Tools.
CVE-2025-15317MEDIUM6.5Tanium addressed an uncontrolled resource consumption vulnerability in Tanium Server.
CVE-2025-14778MEDIUM5.4A flaw was found in Keycloak. A significant Broken Access Control vulnerability exists in the UserManagedPermissionServi...
CVE-2025-63354MEDIUM4.8Hitron HI3120 v7.2.4.5.2b1 allows stored XSS via the Parental Control option when creating a new filter. The device fail...
CVE-2025-59024MEDIUM6.5Crafted delegations or IP fragments can poison cached delegations in Recursor.
CVE-2025-14831MEDIUM5.3A flaw was found in GnuTLS. This vulnerability allows a denial of service (DoS) by excessive CPU (Central Processing Uni...
CVE-2025-10464MEDIUM6.5Insecure Storage of Sensitive Information vulnerability in Birtech Information Technologies Industry and Trade Ltd. Co. ...
CVE-2025-7708MEDIUM6.8Insertion of Sensitive Information Into Sent Data vulnerability in Atlas Educational Software Industry Ltd. Co. K12net a...
CVE-2025-66596MEDIUM6.1A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product does not properl...
CVE-2025-66595MEDIUM5.4A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product is vulnerable to...
CVE-2025-66594MEDIUM5.3A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. Detailed messages are displayed...
CVE-2025-66607MEDIUM5.3A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. The response header contains ...
CVE-2025-66605MEDIUM5.3A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. Since there are input fields ...
CVE-2025-66604MEDIUM5.3A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. The library version could be ...
CVE-2025-66601MEDIUM6.1A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. This product does not specify...
CVE-2025-66599MEDIUM6.9A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation. Physical paths could be displ...
CVE-2025-15564MEDIUM5.5A vulnerability has been found in Mapnik up to 4.2.0. This vulnerability affects the function mapnik::detail::mod<...>::...
CVE-2025-15477MEDIUM6.5The Bucketlister plugin for WordPress is vulnerable to SQL Injection via the plugin's shortcode `category` and `id` attr...
CVE-2025-15476MEDIUM4.3The The Bucketlister plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability...
CVE-2025-15491MEDIUM5.5The Post Slides WordPress plugin through 1.0.1 does not validate some shortcode attributes before using them to generate...
CVE-2025-15267MEDIUM6.4The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's bt_bb_accordion...
CVE-2025-13463MEDIUM6.4The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Post Grid component in a...
CVE-2025-12803MEDIUM6.4The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin 'bt_bb_tabs' shor...
CVE-2025-12159MEDIUM6.4The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's bt_bb_raw_conte...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now