2025 CVE Vulnerabilities
45,221 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-31850 | MEDIUM | 6.5 | 0.2% | Apr 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in RedefiningTheWeb P... |
| CVE-2025-31849 | MEDIUM | 6.5 | 0.3% | Apr 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in fbtemplates Nemesi... |
| CVE-2025-31848 | MEDIUM | 5.3 | 0.4% | Apr 1, 2025 | Missing Authorization vulnerability in WPFactory Adverts adverts-click-tracker allows Exploiting Incorrectly Configured ... |
| CVE-2025-31847 | MEDIUM | 6.5 | 0.3% | Apr 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in themelooks mFolio ... |
| CVE-2025-31846 | MEDIUM | 4.3 | 0.3% | Apr 1, 2025 | Missing Authorization vulnerability in Jeroen Schmit Theater for WordPress theatre allows Exploiting Incorrectly Configu... |
| CVE-2025-31845 | MEDIUM | 4.3 | 0.2% | Apr 1, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Rohit Choudhary Theme Duplicator theme-duplicator allows Cross Site R... |
| CVE-2025-31844 | MEDIUM | 6.5 | 0.3% | Apr 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Noor Alam Magical ... |
| CVE-2025-31843 | MEDIUM | 4.3 | 0.3% | Apr 1, 2025 | Missing Authorization vulnerability in Wilson OpenAI Tools for WordPress & WooCommerce openai-tools-for-wp-wc allows Exp... |
| CVE-2025-31842 | MEDIUM | 5.3 | 0.4% | Apr 1, 2025 | Insertion of Sensitive Information Into Sent Data vulnerability in viralloops Viral Loops WP Integration viral-loops-wp-... |
| CVE-2025-31840 | MEDIUM | 4.3 | 0.2% | Apr 1, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in digireturn Simple Fixed Notice dn-cookie-notice allows Cross Site Req... |
| CVE-2025-31839 | MEDIUM | 4.3 | 0.2% | Apr 1, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in digireturn DN Footer Contacts dn-footer-contacts allows Cross Site Re... |
| CVE-2025-31838 | MEDIUM | 6.5 | 0.3% | Apr 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in eventbee Eventbee ... |
| CVE-2025-31837 | MEDIUM | 5.9 | 0.3% | Apr 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Codeus WP Propo... |
| CVE-2025-31836 | MEDIUM | 5.3 | 0.4% | Apr 1, 2025 | Missing Authorization vulnerability in matthewrubin Review Manager review-manager allows Exploiting Incorrectly Configur... |
| CVE-2025-31835 | MEDIUM | 6.5 | 0.2% | Apr 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brice Capobianco W... |
| CVE-2025-31834 | MEDIUM | 5.3 | 0.4% | Apr 1, 2025 | Missing Authorization vulnerability in themeglow JobBoard Job listing job-board-light allows Exploiting Incorrectly Conf... |
| CVE-2025-31833 | MEDIUM | 4.9 | 0.5% | Apr 1, 2025 | Authorization Bypass Through User-Controlled Key vulnerability in themeglow JobBoard Job listing job-board-light allows ... |
| CVE-2025-31832 | MEDIUM | 5.3 | 0.4% | Apr 1, 2025 | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Beee ACF City Selector acf-c... |
| CVE-2025-31831 | MEDIUM | 4.3 | 0.3% | Apr 1, 2025 | Missing Authorization vulnerability in Team AtomChat AtomChat atomchat allows Exploiting Incorrectly Configured Access C... |
| CVE-2025-31830 | MEDIUM | 4.3 | 0.4% | Apr 1, 2025 | Missing Authorization vulnerability in Uriahs Victor Printus printus-cloud-printing-for-woocommerce allows Exploiting In... |
| CVE-2025-31829 | MEDIUM | 6.5 | 0.3% | Apr 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in devscred ShopCred ... |
| CVE-2025-31826 | MEDIUM | 5.4 | 0.4% | Apr 1, 2025 | Missing Authorization vulnerability in Anzar Ahmed Ni WooCommerce Cost Of Goods ni-woocommerce-cost-of-goods allows Expl... |
| CVE-2025-31824 | MEDIUM | 5.4 | 0.3% | Apr 1, 2025 | Server-Side Request Forgery (SSRF) vulnerability in Wombat Plugins WP Optin Wheel wp-optin-wheel allows Server Side Requ... |
| CVE-2025-31823 | MEDIUM | 6.5 | 0.3% | Apr 1, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpoperations WPope... |
| CVE-2025-31822 | MEDIUM | 5.3 | 0.5% | Apr 1, 2025 | Missing Authorization vulnerability in Ashish Ajani WP Simple HTML Sitemap wp-simple-html-sitemap allows Exploiting Inco... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now