2025 CVE Vulnerabilities
45,203 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-32149 | HIGH | 8.8 | 0.5% | Apr 4, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in winkm89 teachPress... |
| CVE-2025-32148 | HIGH | 8.5 | 0.4% | Apr 4, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Daisycon Daisycon ... |
| CVE-2025-32147 | HIGH | 8.8 | 0.4% | Apr 4, 2025 | Missing Authorization vulnerability in coothemes Easy WP Optimizer easy-wp-optimizer allows Exploiting Incorrectly Confi... |
| CVE-2025-32146 | HIGH | 8.8 | 0.7% | Apr 4, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-32142 | HIGH | 8.8 | 0.7% | Apr 4, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-32141 | HIGH | 8.8 | 0.6% | Apr 4, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-32127 | HIGH | 7.6 | 0.5% | Apr 4, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in onOffice GmbH onOf... |
| CVE-2025-32126 | HIGH | 7.6 | 0.6% | Apr 4, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in cmsMinds Pay with ... |
| CVE-2025-32125 | HIGH | 7.6 | 0.5% | Apr 4, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in silvasoft Silvasof... |
| CVE-2025-32124 | HIGH | 7.6 | 0.6% | Apr 4, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in eleopard Behance P... |
| CVE-2025-32122 | HIGH | 7.6 | 0.5% | Apr 4, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Stylemix uListing ... |
| CVE-2025-32121 | HIGH | 7.6 | 0.5% | Apr 4, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SuitePlugins Video... |
| CVE-2025-32120 | HIGH | 7.6 | 0.5% | Apr 4, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in edanzer Easy Query... |
| CVE-2025-32113 | HIGH | 7.1 | 0.2% | Apr 4, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Renzo Tejada Libro de Reclamaciones y Quejas libro-de-reclamaciones-y... |
| CVE-2025-32112 | HIGH | 7.1 | 0.2% | Apr 4, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in OTWthemes Sidebar Manager Light sidebar-manager-light allows Cross Si... |
| CVE-2025-25178 | HIGH | 7.8 | 0.2% | Apr 4, 2025 | Software installed and run as a non-privileged user may conduct improper GPU system calls to cause kernel system memory ... |
| CVE-2025-0468 | HIGH | 7.1 | 0.2% | Apr 4, 2025 | Software installed and run as a non-privileged user may conduct improper GPU system calls to subvert GPU HW to write to ... |
| CVE-2025-31418 | HIGH | 7.1 | 0.2% | Apr 4, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in noonnoo Gravel all... |
| CVE-2025-31416 | HIGH | 7.1 | 0.2% | Apr 4, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AwesomeTOGI Awesom... |
| CVE-2025-31405 | HIGH | 7.5 | 0.5% | Apr 4, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-31389 | HIGH | 7.1 | 0.2% | Apr 4, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Introvoke Inc. dba... |
| CVE-2025-31384 | HIGH | 7.1 | 0.2% | Apr 4, 2025 | Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Aviplugins Videos allows ... |
| CVE-2025-31420 | HIGH | 7.6 | 0.3% | Apr 4, 2025 | Incorrect Privilege Assignment vulnerability in Tomdever wpForo Forum wpforo allows Privilege Escalation.This issue affe... |
| CVE-2025-3244 | HIGH | 8.8 | 0.5% | Apr 4, 2025 | A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0. It has been declared as cr... |
| CVE-2025-3243 | HIGH | 8.8 | 0.5% | Apr 4, 2025 | A vulnerability was found in code-projects Patient Record Management System 1.0 and classified as critical. This issue a... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now