2025 CVE Vulnerabilities
45,221 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-21902 | MEDIUM | 5.5 | 0.2% | Apr 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: acpi: typec: ucsi: Introduce a ->poll_cci method F... |
| CVE-2025-21901 | MEDIUM | 5.5 | 0.2% | Apr 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Add sanity checks on rdev validity T... |
| CVE-2025-21900 | MEDIUM | 5.5 | 0.1% | Apr 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: NFSv4: Fix a deadlock when recovering state on a si... |
| CVE-2025-21899 | MEDIUM | 5.5 | 0.2% | Apr 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: tracing: Fix bad hist from corrupting named_trigger... |
| CVE-2025-21898 | MEDIUM | 5.5 | 0.2% | Apr 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: ftrace: Avoid potential division by zero in functio... |
| CVE-2025-21897 | MEDIUM | 5.5 | 0.1% | Apr 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: sched_ext: Fix pick_task_scx() picking non-queued t... |
| CVE-2025-21895 | MEDIUM | 4.7 | 0.1% | Apr 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: perf/core: Order the PMU list to fix warning about ... |
| CVE-2025-21894 | MEDIUM | 5.5 | 0.2% | Apr 1, 2025 | In the Linux kernel, the following vulnerability has been resolved: net: enetc: VFs do not support HWTSTAMP_TX_ONESTEP_... |
| CVE-2025-31897 | MEDIUM | 6.5 | 0.2% | Apr 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Arrow Plugins Arro... |
| CVE-2025-31895 | MEDIUM | 6.5 | 0.2% | Apr 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in paulrosen ABC Nota... |
| CVE-2025-31894 | MEDIUM | 6.5 | 0.2% | Apr 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Infoway LLC Ebook ... |
| CVE-2025-31892 | MEDIUM | 6.5 | 0.2% | Apr 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themeum WP Crowdfu... |
| CVE-2025-31891 | MEDIUM | 6.5 | 0.2% | Apr 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Gosign Gosign – Po... |
| CVE-2025-31890 | MEDIUM | 6.5 | 0.2% | Apr 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Mashi Simple Map N... |
| CVE-2025-31888 | MEDIUM | 4.3 | 0.1% | Apr 1, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in WPExperts.io WP Multistore Locator wp-multi-store-locator allows Cros... |
| CVE-2025-31887 | MEDIUM | 4.3 | 0.2% | Apr 1, 2025 | Missing Authorization vulnerability in zookatron MyBookProgress by Stormhill Media mybookprogress allows Exploiting Inco... |
| CVE-2025-31886 | MEDIUM | 4.3 | 0.2% | Apr 1, 2025 | Missing Authorization vulnerability in Repuso Social proof testimonials and reviews by Repuso social-testimonials-and-re... |
| CVE-2025-31885 | MEDIUM | 6.5 | 0.2% | Apr 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Daniel Floeter Hyp... |
| CVE-2025-31884 | MEDIUM | 6.5 | 0.2% | Apr 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP CMS Ninja Norse... |
| CVE-2025-31883 | MEDIUM | 4.8 | 0.2% | Apr 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPWebinarSystem We... |
| CVE-2025-31882 | MEDIUM | 4.3 | 0.3% | Apr 1, 2025 | Missing Authorization vulnerability in WPWebinarSystem WebinarPress wp-webinarsystem allows Exploiting Incorrectly Confi... |
| CVE-2025-31881 | MEDIUM | 5.4 | 0.3% | Apr 1, 2025 | Missing Authorization vulnerability in Stylemix Pearl pearl-header-builder allows Exploiting Incorrectly Configured Acce... |
| CVE-2025-31880 | MEDIUM | 4.3 | 0.2% | Apr 1, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Stylemix Pearl pearl-header-builder allows Cross Site Request Forgery... |
| CVE-2025-31879 | MEDIUM | 5.4 | 0.2% | Apr 1, 2025 | Missing Authorization vulnerability in Dmitry V. (CEO of "UKR Solution") Barcode Generator for WooCommerce embedding-bar... |
| CVE-2025-31878 | MEDIUM | 5.4 | 0.2% | Apr 1, 2025 | Missing Authorization vulnerability in Dmitry V. (CEO of "UKR Solution") UPC/EAN/GTIN Code Generator upc-ean-barcode-gen... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now