2025 CVE Vulnerabilities
45,213 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-3298 | MEDIUM | 5.3 | 0.4% | Apr 5, 2025 | A vulnerability has been found in SourceCodester Online Eyewear Shop 1.0 and classified as problematic. Affected by this... |
| CVE-2025-3297 | MEDIUM | 5.1 | 0.4% | Apr 5, 2025 | A vulnerability, which was classified as problematic, was found in SourceCodester Online Eyewear Shop 1.0. Affected is a... |
| CVE-2025-3296 | MEDIUM | 6.3 | 0.3% | Apr 5, 2025 | A vulnerability, which was classified as critical, has been found in SourceCodester Online Eyewear Shop 1.0. This issue ... |
| CVE-2025-2789 | MEDIUM | 6.5 | 0.3% | Apr 5, 2025 | The MultiVendorX – Empower Your WooCommerce Store with a Dynamic Multivendor Marketplace – Build the Next Amazon, eBay, ... |
| CVE-2025-1233 | MEDIUM | 4.3 | 0.2% | Apr 5, 2025 | The Lafka Plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the 'lafka_opti... |
| CVE-2025-0839 | MEDIUM | 5.4 | 0.2% | Apr 5, 2025 | The ZoomSounds plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and i... |
| CVE-2025-32352 | MEDIUM | 4.8 | 0.3% | Apr 5, 2025 | A type confusion vulnerability in lib/NSSAuthenticator.php in ZendTo before v5.04-7 allows remote attackers to bypass au... |
| CVE-2025-2544 | MEDIUM | 6.4 | 0.3% | Apr 5, 2025 | The AI Content Pipelines plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all v... |
| CVE-2025-2889 | MEDIUM | 6.4 | 0.2% | Apr 5, 2025 | The Link Library plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Link Additional Parameters in... |
| CVE-2025-29477 | MEDIUM | 5.5 | 0.2% | Apr 4, 2025 | An issue in fluent-bit v.3.7.2 allows a local attacker to cause a denial of service via the function consume_event. |
| CVE-2025-29476 | MEDIUM | 5.5 | 0.2% | Apr 4, 2025 | Buffer Overflow vulnerability in compress_chunk_fuzzer with oss-fuzz on commit 16450518afddcb3139de627157208e49bfef6987 ... |
| CVE-2025-3257 | MEDIUM | 5.3 | 0.3% | Apr 4, 2025 | A vulnerability classified as problematic has been found in xujiangfei admintwo 1.0. This affects an unknown part of the... |
| CVE-2025-3253 | MEDIUM | 6.1 | 0.3% | Apr 4, 2025 | A vulnerability was found in xujiangfei admintwo 1.0 and classified as problematic. This issue affects some unknown proc... |
| CVE-2025-3252 | MEDIUM | 6.1 | 0.3% | Apr 4, 2025 | A vulnerability has been found in xujiangfei admintwo 1.0 and classified as problematic. This vulnerability affects unkn... |
| CVE-2025-32278 | MEDIUM | 4.3 | 0.1% | Apr 4, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in wprio Table Block by RioVizual riovizual allows Cross Site Request Fo... |
| CVE-2025-32277 | MEDIUM | 4.3 | 0.2% | Apr 4, 2025 | Missing Authorization vulnerability in Ateeq Rafeeq RepairBuddy computer-repair-shop allows Exploiting Incorrectly Confi... |
| CVE-2025-32276 | MEDIUM | 4.3 | 0.1% | Apr 4, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Quý Lê 91 Administrator Z administrator-z allows Cross Site Request F... |
| CVE-2025-32274 | MEDIUM | 4.3 | 0.1% | Apr 4, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in axew3 WP w3all phpBB wp-w3all-phpbb-integration allows Cross Site Req... |
| CVE-2025-32273 | MEDIUM | 4.3 | 0.2% | Apr 4, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in freetobook Freetobook Responsive Widget freetobook-responsive-widget ... |
| CVE-2025-32272 | MEDIUM | 4.3 | 0.2% | Apr 4, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in PickPlugins Wishlist wishlist allows Cross Site Request Forgery.This ... |
| CVE-2025-32271 | MEDIUM | 4.3 | 0.2% | Apr 4, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in ablancodev Woocommerce Role Pricing woocommerce-role-pricing allows C... |
| CVE-2025-32270 | MEDIUM | 4.3 | 0.2% | Apr 4, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Broadstreet Broadstreet Ads broadstreet allows Cross Site Request For... |
| CVE-2025-32269 | MEDIUM | 4.3 | 0.2% | Apr 4, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in CRM Perks WP Zendesk for Contact Form 7, WPForms, Elementor, Formidab... |
| CVE-2025-32268 | MEDIUM | 4.3 | 0.2% | Apr 4, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in www.15.to QR Code Tag for WC qr-code-tag-for-wc-from-goaskle-com allo... |
| CVE-2025-32267 | MEDIUM | 4.3 | 0.1% | Apr 4, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in wpzinc Post to Social Media – WordPress to Hootsuite wp-to-hootsuite ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now