2025 CVE Vulnerabilities
45,206 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-46471 | MEDIUM | 6.5 | 0.2% | Apr 24, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in gnanavelshenll WP ... |
| CVE-2025-46470 | MEDIUM | 4.3 | 0.2% | Apr 24, 2025 | Missing Authorization vulnerability in Peter Raschendorfer Smart Hashtags [#hashtagger] hashtagger allows Exploiting Inc... |
| CVE-2025-46469 | MEDIUM | 5.9 | 0.2% | Apr 24, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Benjamin Buddle Se... |
| CVE-2025-46467 | MEDIUM | 6.5 | 0.2% | Apr 24, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Rahendra Putra K™ ... |
| CVE-2025-46462 | MEDIUM | 4.3 | 0.1% | Apr 24, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Trân Minh-Quân WPVN wpvn-username-changer allows Cross Site Request F... |
| CVE-2025-46461 | MEDIUM | 6.5 | 0.2% | Apr 24, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Relentless Apps RR... |
| CVE-2025-46459 | MEDIUM | 5.9 | 0.2% | Apr 24, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ralf Hortt Confirm... |
| CVE-2025-46453 | MEDIUM | 6.5 | 0.2% | Apr 24, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CreatorTeam Zoho C... |
| CVE-2025-46451 | MEDIUM | 5.9 | 0.2% | Apr 24, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Syed Balkhi Floati... |
| CVE-2025-46447 | MEDIUM | 6.5 | 0.2% | Apr 24, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPFable Fable Extr... |
| CVE-2025-46445 | MEDIUM | 6.5 | 0.2% | Apr 24, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in pReya External Mar... |
| CVE-2025-46443 | MEDIUM | 4.9 | 0.2% | Apr 24, 2025 | Server-Side Request Forgery (SSRF) vulnerability in Adam Pery Animate animate allows Server Side Request Forgery.This is... |
| CVE-2025-46438 | MEDIUM | 6.5 | 0.2% | Apr 24, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in warmwhisky GTDB Gu... |
| CVE-2025-46436 | MEDIUM | 4.3 | 0.1% | Apr 24, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Sebastian Echeverry SCSS-Library scss-library allows Cross Site Reque... |
| CVE-2025-46261 | MEDIUM | 4.8 | 0.2% | Apr 24, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Craig Hewitt Serio... |
| CVE-2025-46260 | MEDIUM | 6.5 | 0.2% | Apr 24, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wowDevs Sky Addons... |
| CVE-2025-39404 | MEDIUM | 4.7 | 0.3% | Apr 24, 2025 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Heateor Support Sassy Social Share sassy-social-sha... |
| CVE-2025-39400 | MEDIUM | 6.1 | 0.2% | Apr 24, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpeverest User Reg... |
| CVE-2025-39390 | MEDIUM | 5.3 | 0.3% | Apr 24, 2025 | Missing Authorization vulnerability in magepeopleteam Booking and Rental Manager booking-and-rental-manager-for-woocomme... |
| CVE-2025-39385 | MEDIUM | 4.3 | 0.3% | Apr 24, 2025 | Missing Authorization vulnerability in vowelweb Sirat sirat allows Exploiting Incorrectly Configured Access Control Secu... |
| CVE-2025-44135 | MEDIUM | 6.5 | 0.2% | Apr 24, 2025 | A vulnerability was found in code-projects Online Class and Exam Scheduling System 1.0 in /Scheduling/pages/profile_upda... |
| CVE-2025-44134 | MEDIUM | 6.5 | 0.2% | Apr 24, 2025 | A vulnerability was found in Code-Projects Online Class and Exam Scheduling System 1.0 in the file /Scheduling/pages/cla... |
| CVE-2025-29568 | MEDIUM | 4.8 | 0.2% | Apr 24, 2025 | A vulnerability has been discovered in the code-projects Online Class and Exam Scheduling System 1.0. The issue affects ... |
| CVE-2025-30409 | MEDIUM | 5.5 | 0.2% | Apr 24, 2025 | Denial of service due to allocation of resources without limits. The following products are affected: Acronis Cyber Prot... |
| CVE-2025-30408 | MEDIUM | 6.7 | 0.1% | Apr 24, 2025 | Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protec... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now