2025 CVE Vulnerabilities
45,221 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-32052 | MEDIUM | 6.5 | 0.6% | Apr 3, 2025 | A flaw was found in libsoup. A vulnerability in the sniff_unknown() function may lead to heap buffer over-read. |
| CVE-2025-32051 | MEDIUM | 5.9 | 0.5% | Apr 3, 2025 | A flaw was found in libsoup. The libsoup soup_uri_decode_data_uri() function may crash when processing malformed data UR... |
| CVE-2025-32050 | MEDIUM | 5.9 | 0.7% | Apr 3, 2025 | A flaw was found in libsoup. The libsoup append_param_quoted() function may contain an overflow bug resulting in a buffe... |
| CVE-2025-31896 | MEDIUM | 6.5 | 0.3% | Apr 3, 2025 | Missing Authorization vulnerability in istmoplugins GetBookingsWP get-bookings-wp allows Exploiting Incorrectly Configur... |
| CVE-2025-31893 | MEDIUM | 6.5 | 0.2% | Apr 3, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in cheesefather Botne... |
| CVE-2025-31876 | MEDIUM | 5.8 | 0.3% | Apr 3, 2025 | Missing Authorization vulnerability in gunnarpayday Payday payday allows Exploiting Incorrectly Configured Access Contro... |
| CVE-2025-31858 | MEDIUM | 6.5 | 0.3% | Apr 3, 2025 | Missing Authorization vulnerability in matthewrubin Local Magic local-magic allows Exploiting Incorrectly Configured Acc... |
| CVE-2025-31841 | MEDIUM | 6.3 | 0.2% | Apr 3, 2025 | Missing Authorization vulnerability in Frank P. Walentynowicz FPW Category Thumbnails fpw-category-thumbnails allows Exp... |
| CVE-2025-31827 | MEDIUM | 4.9 | 0.5% | Apr 3, 2025 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in vlad.olaru Fonto fonto a... |
| CVE-2025-31825 | MEDIUM | 4.9 | 0.5% | Apr 3, 2025 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in pixelgrade Category Icon... |
| CVE-2025-31800 | MEDIUM | 6.5 | 0.5% | Apr 3, 2025 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in publitio Publitio publit... |
| CVE-2025-31795 | MEDIUM | 6.5 | 0.3% | Apr 3, 2025 | Missing Authorization vulnerability in Plugin Devs Shopify to WooCommerce Migration migrate-shopify-to-woocommerce allow... |
| CVE-2025-31794 | MEDIUM | 5.4 | 0.3% | Apr 3, 2025 | Missing Authorization vulnerability in Web Ready Now WR Price List Manager For Woocommerce wr-price-list-for-woocommerce... |
| CVE-2025-31789 | MEDIUM | 6.5 | 0.3% | Apr 3, 2025 | Missing Authorization vulnerability in Matat Technologies TextMe SMS textme-sms-integration allows Exploiting Incorrectl... |
| CVE-2025-31768 | MEDIUM | 6.5 | 0.3% | Apr 3, 2025 | Missing Authorization vulnerability in OTWthemes Widget Manager Light widget-manager-light allows Accessing Functionalit... |
| CVE-2025-31758 | MEDIUM | 6.5 | 0.4% | Apr 3, 2025 | Missing Authorization vulnerability in BinaryCarpenter Free Woocommerce Product Table View free-product-table-for-woocom... |
| CVE-2025-31746 | MEDIUM | 6.4 | 0.3% | Apr 3, 2025 | Missing Authorization vulnerability in Think201 Clients clients allows Exploiting Incorrectly Configured Access Control ... |
| CVE-2025-31739 | MEDIUM | 6.4 | 0.3% | Apr 3, 2025 | Missing Authorization vulnerability in Manuel Schmalstieg Minimalistic Event Manager minimalistic-event-manager allows E... |
| CVE-2025-31736 | MEDIUM | 6.5 | 0.3% | Apr 3, 2025 | Missing Authorization vulnerability in richtexteditor Rich Text Editor richtexteditor allows Exploiting Incorrectly Conf... |
| CVE-2025-31729 | MEDIUM | 6.5 | 0.3% | Apr 3, 2025 | Missing Authorization vulnerability in jeffikus WooTumblog woo-tumblog allows Exploiting Incorrectly Configured Access C... |
| CVE-2025-31622 | MEDIUM | 6.5 | 0.2% | Apr 3, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Utkarsh Kukreti Ad... |
| CVE-2025-31581 | MEDIUM | 6.5 | 0.3% | Apr 3, 2025 | Missing Authorization vulnerability in Sandeep Kumar WP Video Playlist wp-video-playlist allows Exploiting Incorrectly C... |
| CVE-2025-31558 | MEDIUM | 5.8 | 0.3% | Apr 3, 2025 | Insertion of Sensitive Information into Externally-Accessible File or Directory vulnerability in Greg TailPress tailpres... |
| CVE-2025-31554 | MEDIUM | 5.9 | 0.4% | Apr 3, 2025 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in docxpresso Docxpresso do... |
| CVE-2025-31541 | MEDIUM | 6.5 | 0.3% | Apr 3, 2025 | Missing Authorization vulnerability in TuriTop TuriTop Booking System turitop-booking-system allows Exploiting Incorrect... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now