2025 CVE Vulnerabilities
45,206 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-47597 | MEDIUM | 4.3 | 0.1% | May 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Maulik Vora WP Podcasts Manager wp-podcasts-manager allows Cross Site... |
| CVE-2025-47596 | MEDIUM | 4.3 | 0.1% | May 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Syed Balkhi Beacon Lead Magnets and Lead Capture beacon-by allows Cro... |
| CVE-2025-47595 | MEDIUM | 5.9 | 0.2% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Darshan Saroya Col... |
| CVE-2025-47594 | MEDIUM | 4.3 | 0.1% | May 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in DAEXT Soccer Live Scores allows Cross Site Request Forgery. This issu... |
| CVE-2025-47593 | MEDIUM | 5.9 | 0.2% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jonas Hjalmarsson ... |
| CVE-2025-47592 | MEDIUM | 5.9 | 0.2% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Árpád Lehel Mátyus... |
| CVE-2025-47591 | MEDIUM | 4.3 | 0.3% | May 7, 2025 | Missing Authorization vulnerability in CreedAlly Bulk Featured Image bulk-featured-image allows Exploiting Incorrectly C... |
| CVE-2025-47590 | MEDIUM | 4.3 | 0.1% | May 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in JExtensions Store WPSpeed wpspeed allows Cross Site Request Forgery.T... |
| CVE-2025-47589 | MEDIUM | 6.5 | 0.2% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in motov.net Ebook St... |
| CVE-2025-47551 | MEDIUM | 4.3 | 0.1% | May 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in ctltwp Wiki Embed wiki-embed allows Cross Site Request Forgery.This i... |
| CVE-2025-47547 | MEDIUM | 5.4 | 0.2% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SendPulse SendPuls... |
| CVE-2025-47543 | MEDIUM | 4.3 | 0.1% | May 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in themetechmount TrueBooker truebooker-appointment-booking allows Cross... |
| CVE-2025-47542 | MEDIUM | 4.3 | 0.1% | May 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Michael Simple calendar for Elementor simple-calendar-for-elementor a... |
| CVE-2025-47528 | MEDIUM | 4.3 | 0.2% | May 7, 2025 | Missing Authorization vulnerability in pewilliams Ovation Elements ovation-elements allows Exploiting Incorrectly Config... |
| CVE-2025-47526 | MEDIUM | 5.4 | 0.3% | May 7, 2025 | Missing Authorization vulnerability in GS Plugins GS Variation Swatches for WooCommerce gs-woo-variation-swatches allows... |
| CVE-2025-47525 | MEDIUM | 5.9 | 0.3% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Pa... |
| CVE-2025-47524 | MEDIUM | 5.9 | 0.2% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in karim42 Quran mult... |
| CVE-2025-47523 | MEDIUM | 4.3 | 0.1% | May 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Lukáš Hartmann Seznam Webmaster seznam-webmaster allows Cross Site Re... |
| CVE-2025-47522 | MEDIUM | 5.9 | 0.2% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AWEOS GmbH AWEOS W... |
| CVE-2025-47521 | MEDIUM | 5.9 | 0.2% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in robosoft Robo Gall... |
| CVE-2025-47520 | MEDIUM | 5.9 | 0.2% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Syed Balkhi Charit... |
| CVE-2025-47519 | MEDIUM | 4.3 | 0.1% | May 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Scott Paterson Easy PayPal Events easy-paypal-events-tickets allows C... |
| CVE-2025-47518 | MEDIUM | 5.9 | 0.2% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Scott Paterson Con... |
| CVE-2025-47517 | MEDIUM | 6.1 | 0.1% | May 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Scott Paterson Accept Donations with PayPal & Stripe easy-paypal-dona... |
| CVE-2025-47516 | MEDIUM | 5.9 | 0.2% | May 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Scott Paterson Tim... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now