2025 CVE Vulnerabilities
45,209 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-22141 | HIGH | 8.8 | 0.7% | Jan 8, 2025 | WeGIA is a web manager for charitable institutions. A SQL Injection vulnerability was identified in the /dao/verificar_r... |
| CVE-2025-22140 | HIGH | 8.8 | 0.7% | Jan 8, 2025 | WeGIA is a web manager for charitable institutions. A SQL Injection vulnerability was identified in the /html/funcionari... |
| CVE-2025-0291 | HIGH | 8.8 | 7.4% | Jan 8, 2025 | Type Confusion in V8 in Google Chrome prior to 131.0.6778.264 allowed a remote attacker to execute arbitrary code inside... |
| CVE-2025-22136 | HIGH | 8.6 | 0.4% | Jan 8, 2025 | Tabby (formerly Terminus) is a highly configurable terminal emulator. Prior to 1.0.217 , Tabby enables several high-risk... |
| CVE-2025-22130 | HIGH | 8.8 | 0.7% | Jan 8, 2025 | Soft Serve is a self-hostable Git server for the command line. Prior to 0.8.2 , a path traversal attack allows existing ... |
| CVE-2025-0218 | HIGH | 7.1 | 0.2% | Jan 7, 2025 | When batch jobs are executed by pgAgent, a script is created in a temporary directory and then executed. In versions of ... |
| CVE-2025-22350 | HIGH | 7.6 | 0.5% | Jan 7, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WpIndeed Ultimate ... |
| CVE-2025-0300 | HIGH | 8.8 | 0.5% | Jan 7, 2025 | A vulnerability classified as critical was found in code-projects Online Book Shop 1.0. Affected by this vulnerability i... |
| CVE-2025-22593 | HIGH | 7.1 | 0.2% | Jan 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in burria Laika Pedig... |
| CVE-2025-22592 | HIGH | 7.5 | 0.4% | Jan 7, 2025 | Missing Authorization vulnerability in 8blocks 1003 Mortgage Application 1003-mortgage-application allows Accessing Func... |
| CVE-2025-22590 | HIGH | 7.1 | 0.2% | Jan 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in mmrs151 Prayer Times Anywhere prayer-times-anywhere allows Stored XSS... |
| CVE-2025-22589 | HIGH | 7.1 | 0.1% | Jan 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in bozdoz Quote Tweet quote-tweet allows Stored XSS.This issue affects Q... |
| CVE-2025-22582 | HIGH | 7.1 | 0.1% | Jan 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Scott Nelle Uptime Robot uptime-robot allows Stored XSS.This issue af... |
| CVE-2025-22571 | HIGH | 7.1 | 0.2% | Jan 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in instabot Instabot instabot allows Cross Site Request Forgery.This iss... |
| CVE-2025-22559 | HIGH | 7.1 | 0.2% | Jan 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in tubepress TubePress.NET tubepressnet allows Cross Site Request Forger... |
| CVE-2025-22557 | HIGH | 7.1 | 0.2% | Jan 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in cdowp News Publisher Autopilot wpm-news-api allows Cross Site Request... |
| CVE-2025-22556 | HIGH | 7.1 | 0.2% | Jan 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in WP CMS Ninja Norse Rune Oracle Plugin norse-runes-oracle allows Cross... |
| CVE-2025-22555 | HIGH | 7.1 | 0.2% | Jan 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in njshofe Smoothness Slider Shortcode smoothness-slider-shortcode allow... |
| CVE-2025-22552 | HIGH | 7.1 | 0.2% | Jan 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in bnielsen Affiliate Disclosure Statement affiliate-disclosure-statemen... |
| CVE-2025-22548 | HIGH | 7.1 | 0.4% | Jan 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in frankkoenen ldap_l... |
| CVE-2025-22547 | HIGH | 7.1 | 0.4% | Jan 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in jaykrishnang JK Ht... |
| CVE-2025-22538 | HIGH | 7.1 | 0.2% | Jan 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Ofek Nakar Virtual Bot virtual-bot allows Stored XSS.This issue affec... |
| CVE-2025-22536 | HIGH | 7.6 | 0.6% | Jan 7, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in hiren.sabd WP Musi... |
| CVE-2025-22533 | HIGH | 7.6 | 0.6% | Jan 7, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in bulktheme WOOEXIM ... |
| CVE-2025-22522 | HIGH | 7.1 | 0.4% | Jan 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in roya khosravi Sing... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now