2025 CVE Vulnerabilities
45,206 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-3782 | MEDIUM | 6.4 | 0.2% | May 6, 2025 | The Cision Block plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘id’ parameter in all version... |
| CVE-2025-27248 | MEDIUM | 5.5 | 0.1% | May 6, 2025 | in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer dereference. |
| CVE-2025-27241 | MEDIUM | 5.5 | 0.1% | May 6, 2025 | in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer dereference. |
| CVE-2025-25218 | MEDIUM | 5.5 | 0.1% | May 6, 2025 | in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through NULL pointer dereference. |
| CVE-2025-25052 | MEDIUM | 5.5 | 0.1% | May 6, 2025 | in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through buffer overflow. |
| CVE-2025-22886 | MEDIUM | 5.5 | 0.1% | May 6, 2025 | in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release of memory. |
| CVE-2025-4333 | MEDIUM | 6.3 | 0.3% | May 6, 2025 | A vulnerability was found in feng_ha_ha/megagao ssm-erp and production_ssm up to 0.0.1. It has been classified as critic... |
| CVE-2025-46593 | MEDIUM | 5.5 | 0.1% | May 6, 2025 | Process residence vulnerability in abnormal scenarios in the print module Impact: Successful exploitation of this vulner... |
| CVE-2025-46592 | MEDIUM | 5.5 | 0.1% | May 6, 2025 | Null pointer dereference vulnerability in the USB HDI driver module Impact: Successful exploitation of this vulnerabilit... |
| CVE-2025-46591 | MEDIUM | 5.5 | 0.1% | May 6, 2025 | Out-of-bounds data read vulnerability in the authorization module Impact: Successful exploitation of this vulnerability ... |
| CVE-2025-46590 | MEDIUM | 6.5 | 0.2% | May 6, 2025 | Bypass vulnerability in the network search instruction authentication module Impact: Successful exploitation of this vul... |
| CVE-2025-46587 | MEDIUM | 5.5 | 0.1% | May 6, 2025 | Permission control vulnerability in the media library module Impact: Successful exploitation of this vulnerability may a... |
| CVE-2025-3281 | MEDIUM | 5.3 | 0.4% | May 6, 2025 | The User Registration & Membership – Custom Registration Form, Login Form, and User Profile plugin for WordPress is vuln... |
| CVE-2025-3020 | MEDIUM | 5.4 | 0.2% | May 6, 2025 | An low privileged remote Attacker can execute arbitrary web scripts or HTML via a crafted payload injected into several ... |
| CVE-2025-4329 | MEDIUM | 5.3 | 0.5% | May 6, 2025 | A vulnerability was found in 74CMS up to 3.33.0. It has been rated as problematic. Affected by this issue is the functio... |
| CVE-2025-4328 | MEDIUM | 5.1 | 0.3% | May 6, 2025 | A vulnerability was found in fp2952 spring-cloud-base up to 7f050dc6db9afab82c5ce1d41cd74ed255ec9bfa. It has been declar... |
| CVE-2025-4327 | MEDIUM | 5.3 | 0.2% | May 6, 2025 | A vulnerability was found in MRCMS 3.1.2. It has been classified as problematic. Affected is an unknown function. The ma... |
| CVE-2025-46586 | MEDIUM | 5.5 | 0.1% | May 6, 2025 | Permission control vulnerability in the contacts module Impact: Successful exploitation of this vulnerability may affect... |
| CVE-2025-46584 | MEDIUM | 5.5 | 0.1% | May 6, 2025 | Vulnerability of improper authentication logic implementation in the file system module Impact: Successful exploitation ... |
| CVE-2025-4326 | MEDIUM | 5.4 | 0.3% | May 6, 2025 | A vulnerability was found in MRCMS 3.1.2 and classified as problematic. This issue affects some unknown processing of th... |
| CVE-2025-4325 | MEDIUM | 4.8 | 0.3% | May 6, 2025 | A vulnerability has been found in MRCMS 3.1.2 and classified as problematic. This vulnerability affects unknown code of ... |
| CVE-2025-4324 | MEDIUM | 5.4 | 0.3% | May 6, 2025 | A vulnerability, which was classified as problematic, was found in MRCMS 3.1.2. This affects an unknown part of the file... |
| CVE-2025-4337 | MEDIUM | 4.3 | 0.1% | May 6, 2025 | The AHAthat Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including... |
| CVE-2025-4323 | MEDIUM | 5.4 | 0.3% | May 6, 2025 | A vulnerability, which was classified as problematic, has been found in MRCMS 3.1.2. Affected by this issue is some unkn... |
| CVE-2025-4310 | MEDIUM | 6.3 | 0.3% | May 6, 2025 | A vulnerability classified as critical has been found in itsourcecode Content Management System 1.0. This affects an unk... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now