2025 CVE Vulnerabilities
45,207 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-1455 | MEDIUM | 5.4 | 0.2% | Apr 12, 2025 | The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Woo G... |
| CVE-2025-3292 | MEDIUM | 4.3 | 0.3% | Apr 12, 2025 | The User Registration & Membership – Custom Registration Form, Login Form, and User Profile plugin for WordPress is vuln... |
| CVE-2025-3282 | MEDIUM | 5.3 | 0.2% | Apr 12, 2025 | The User Registration & Membership – Custom Registration Form, Login Form, and User Profile plugin for WordPress is vuln... |
| CVE-2025-3276 | MEDIUM | 5.4 | 0.2% | Apr 12, 2025 | The SKT Blocks – Gutenberg based Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ... |
| CVE-2025-2871 | MEDIUM | 4.3 | 0.2% | Apr 12, 2025 | The WordPress Mega Menu – QuadMenu plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up t... |
| CVE-2025-2881 | MEDIUM | 5.3 | 0.3% | Apr 12, 2025 | The Developer Toolbar plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and in... |
| CVE-2025-2841 | MEDIUM | 5.3 | 0.3% | Apr 12, 2025 | The Cart66 Cloud plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includi... |
| CVE-2025-32726 | MEDIUM | 6.8 | 0.4% | Apr 12, 2025 | Improper access control in Visual Studio Code allows an authorized attacker to elevate privileges locally. |
| CVE-2025-2269 | MEDIUM | 6.1 | 0.2% | Apr 12, 2025 | The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to Reflected Cross-Site Sc... |
| CVE-2025-0123 | MEDIUM | 5.9 | 0.1% | Apr 11, 2025 | A vulnerability in the Palo Alto Networks PAN-OS® software enables unlicensed administrators to view clear-text data cap... |
| CVE-2025-0119 | MEDIUM | 6.3 | 0.5% | Apr 11, 2025 | A command injection vulnerability in the Palo Alto Networks Cortex XDR® Broker VM allows an authenticated user to execut... |
| CVE-2025-32080 | MEDIUM | 6.9 | 0.4% | Apr 11, 2025 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in The Wikimedia Foundation Mediawiki - Mobile ... |
| CVE-2025-32079 | MEDIUM | 6.5 | 0.3% | Apr 11, 2025 | Improper Input Validation vulnerability in The Wikimedia Foundation Mediawiki - GrowthExperiments allows HTTP DoS.This i... |
| CVE-2025-32078 | MEDIUM | 6.9 | 0.3% | Apr 11, 2025 | Improper Encoding or Escaping of Output vulnerability in The Wikimedia Foundation Mediawiki - Version Compare Extension ... |
| CVE-2025-32077 | MEDIUM | 6.9 | 0.3% | Apr 11, 2025 | Improper Input Validation vulnerability in The Wikimedia Foundation Mediawiki - Extension:SimpleCalendar allows Cross-Si... |
| CVE-2025-32076 | MEDIUM | 6.9 | 0.3% | Apr 11, 2025 | Improper Input Validation vulnerability in The Wikimedia Foundation Mediawiki - Visual Data Extension allows HTTP DoS.Th... |
| CVE-2025-32075 | MEDIUM | 6.9 | 0.3% | Apr 11, 2025 | Improper Input Validation vulnerability in The Wikimedia Foundation Mediawiki - Tabs Extension allows Code Injection.Thi... |
| CVE-2025-32074 | MEDIUM | 5.4 | 0.2% | Apr 11, 2025 | Improper Encoding or Escaping of Output vulnerability in The Wikimedia Foundation Mediawiki - Confirm Account Extension ... |
| CVE-2025-32073 | MEDIUM | 5.4 | 0.2% | Apr 11, 2025 | Improper Input Validation vulnerability in The Wikimedia Foundation Mediawiki - HTML Tags allows Cross-Site Scripting (X... |
| CVE-2025-32072 | MEDIUM | 6.9 | 0.4% | Apr 11, 2025 | Improper Encoding or Escaping of Output vulnerability in The Wikimedia Foundation Mediawiki Core - Feed Utils allows Web... |
| CVE-2025-32071 | MEDIUM | 5.4 | 0.2% | Apr 11, 2025 | Improper Input Validation vulnerability in The Wikimedia Foundation Mediawiki - Wikidata Extension allows Cross-Site Scr... |
| CVE-2025-32070 | MEDIUM | 5.4 | 0.2% | Apr 11, 2025 | Improper Input Validation vulnerability in The Wikimedia Foundation Mediawiki - AJAX Poll Extension allows Cross-Site Sc... |
| CVE-2025-32069 | MEDIUM | 5.4 | 0.2% | Apr 11, 2025 | Improper Input Validation vulnerability in The Wikimedia Foundation Mediawiki - Wikibase Media Info Extension allows Cro... |
| CVE-2025-32068 | MEDIUM | 5.4 | 0.2% | Apr 11, 2025 | Incorrect Authorization vulnerability in The Wikimedia Foundation Mediawiki - OAuth Extension allows Authentication Bypa... |
| CVE-2025-32067 | MEDIUM | 5.4 | 0.2% | Apr 11, 2025 | Improper Input Validation vulnerability in The Wikimedia Foundation Mediawiki - Growth Experiments Extension allows Cros... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now