2025 CVE Vulnerabilities
45,224 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-11436 | HIGH | 8.8 | 0.3% | Oct 8, 2025 | A vulnerability was detected in JhumanJ OpnForm up to 1.9.3. Affected by this issue is some unknown functionality of the... |
| CVE-2025-11435 | MEDIUM | 6.1 | 0.4% | Oct 8, 2025 | A security vulnerability has been detected in JhumanJ OpnForm up to 1.9.3. Affected by this vulnerability is an unknown ... |
| CVE-2025-11171 | MEDIUM | 5.3 | 0.3% | Oct 8, 2025 | The Chartify – WordPress Chart Plugin for WordPress is vulnerable to Missing Authentication for Critical Function in all... |
| CVE-2025-10635 | HIGH | 7.7 | 0.2% | Oct 8, 2025 | The Find Me On WordPress plugin through 2.0.9.1 does not sanitize and escape a parameter before using it in a SQL statem... |
| CVE-2025-11434 | CRITICAL | 9.8 | 0.4% | Oct 8, 2025 | A weakness has been identified in itsourcecode Student Transcript Processing System 1.0. Affected is an unknown function... |
| CVE-2025-11433 | MEDIUM | 6.1 | 0.3% | Oct 8, 2025 | A security flaw has been discovered in itsourcecode Leave Management System 1.0. This impacts the function redirect of t... |
| CVE-2025-11432 | CRITICAL | 9.8 | 0.4% | Oct 8, 2025 | A vulnerability was identified in itsourcecode Leave Management System 1.0. This affects an unknown function of the file... |
| CVE-2025-11204 | HIGH | 7.2 | 0.4% | Oct 8, 2025 | The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vu... |
| CVE-2025-11431 | CRITICAL | 9.8 | 0.4% | Oct 8, 2025 | A vulnerability was determined in code-projects Web-Based Inventory and POS System 1.0. The impacted element is an unkno... |
| CVE-2025-11430 | CRITICAL | 9.8 | 0.4% | Oct 8, 2025 | A vulnerability was found in SourceCodester Simple E-Commerce Bookstore 1.0. The affected element is an unknown function... |
| CVE-2025-10587 | CRITICAL | 9.8 | 0.4% | Oct 8, 2025 | The Community Events plugin for WordPress is vulnerable to SQL Injection via the event_category parameter in all version... |
| CVE-2025-10494 | HIGH | 8.1 | 0.4% | Oct 8, 2025 | The Motors – Car Dealership & Classified Listings Plugin plugin for WordPress is vulnerable to arbitrary file deletion d... |
| CVE-2025-11426 | HIGH | 8.8 | 0.3% | Oct 8, 2025 | A security flaw has been discovered in projectworlds Advanced Library Management System 1.0. Affected by this vulnerabil... |
| CVE-2025-11425 | MEDIUM | 4.8 | 0.2% | Oct 8, 2025 | A vulnerability was identified in projectworlds Advanced Library Management System 1.0. Affected is an unknown function ... |
| CVE-2025-61787 | HIGH | 8.1 | 2.1% | Oct 8, 2025 | Deno is a JavaScript, TypeScript, and WebAssembly runtime. Versions prior to 2.5.3 and 2.2.15 are vulnerable to Command ... |
| CVE-2025-11424 | CRITICAL | 9.8 | 0.4% | Oct 8, 2025 | A vulnerability was determined in code-projects Web-Based Inventory and POS System 1.0. This impacts an unknown function... |
| CVE-2025-11423 | CRITICAL | 9.8 | 0.8% | Oct 8, 2025 | A vulnerability was found in Tenda CH22 1.0.0.1. This affects the function formSafeEmailFilter of the file /goform/SafeE... |
| CVE-2025-11422 | CRITICAL | 9.8 | 0.5% | Oct 8, 2025 | A vulnerability has been found in Campcodes Advanced Online Voting Management System 1.0. The impacted element is an unk... |
| CVE-2025-11421 | MEDIUM | 5.4 | 0.3% | Oct 8, 2025 | A flaw has been found in code-projects Voting System 1.0. The affected element is an unknown function of the file /admin... |
| CVE-2025-61786 | LOW | 3.3 | 0.2% | Oct 8, 2025 | Deno is a JavaScript, TypeScript, and WebAssembly runtime. In versions prior to 2.5.3 and 2.2.15, `Deno.FsFile.prototype... |
| CVE-2025-61785 | LOW | 3.3 | 0.2% | Oct 8, 2025 | Deno is a JavaScript, TypeScript, and WebAssembly runtime. In versions prior to 2.5.3 and 2.2.15, `Deno.FsFile.prototype... |
| CVE-2025-48981 | HIGH | 8.6 | 0.1% | Oct 8, 2025 | An insecure implementation of the proprietary protocol DNET in Product CGM MEDICO allows attackers within the intranet t... |
| CVE-2025-11420 | CRITICAL | 9.8 | 0.4% | Oct 8, 2025 | A vulnerability was detected in code-projects E-Commerce Website 1.0. Impacted is an unknown function of the file /pages... |
| CVE-2025-11418 | CRITICAL | 9.8 | 6.2% | Oct 8, 2025 | A security vulnerability has been detected in Tenda CH22 up to 1.0.0.1. This issue affects the function formWrlsafeset o... |
| CVE-2025-61999 | MEDIUM | 4.8 | 0.2% | Oct 8, 2025 | OPEXUS FOIAXpress before 11.13.3.0 allows an administrative user to upload JavaScript or other content embedded in an SV... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now