2025 CVE Vulnerabilities

45,224 CVEs published in 2025.

CVE IDSeverityCVSSDescription
CVE-2025-11436HIGH8.8A vulnerability was detected in JhumanJ OpnForm up to 1.9.3. Affected by this issue is some unknown functionality of the...
CVE-2025-11435MEDIUM6.1A security vulnerability has been detected in JhumanJ OpnForm up to 1.9.3. Affected by this vulnerability is an unknown ...
CVE-2025-11171MEDIUM5.3The Chartify – WordPress Chart Plugin for WordPress is vulnerable to Missing Authentication for Critical Function in all...
CVE-2025-10635HIGH7.7The Find Me On WordPress plugin through 2.0.9.1 does not sanitize and escape a parameter before using it in a SQL statem...
CVE-2025-11434CRITICAL9.8A weakness has been identified in itsourcecode Student Transcript Processing System 1.0. Affected is an unknown function...
CVE-2025-11433MEDIUM6.1A security flaw has been discovered in itsourcecode Leave Management System 1.0. This impacts the function redirect of t...
CVE-2025-11432CRITICAL9.8A vulnerability was identified in itsourcecode Leave Management System 1.0. This affects an unknown function of the file...
CVE-2025-11204HIGH7.2The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vu...
CVE-2025-11431CRITICAL9.8A vulnerability was determined in code-projects Web-Based Inventory and POS System 1.0. The impacted element is an unkno...
CVE-2025-11430CRITICAL9.8A vulnerability was found in SourceCodester Simple E-Commerce Bookstore 1.0. The affected element is an unknown function...
CVE-2025-10587CRITICAL9.8The Community Events plugin for WordPress is vulnerable to SQL Injection via the event_category parameter in all version...
CVE-2025-10494HIGH8.1The Motors – Car Dealership & Classified Listings Plugin plugin for WordPress is vulnerable to arbitrary file deletion d...
CVE-2025-11426HIGH8.8A security flaw has been discovered in projectworlds Advanced Library Management System 1.0. Affected by this vulnerabil...
CVE-2025-11425MEDIUM4.8A vulnerability was identified in projectworlds Advanced Library Management System 1.0. Affected is an unknown function ...
CVE-2025-61787HIGH8.1Deno is a JavaScript, TypeScript, and WebAssembly runtime. Versions prior to 2.5.3 and 2.2.15 are vulnerable to Command ...
CVE-2025-11424CRITICAL9.8A vulnerability was determined in code-projects Web-Based Inventory and POS System 1.0. This impacts an unknown function...
CVE-2025-11423CRITICAL9.8A vulnerability was found in Tenda CH22 1.0.0.1. This affects the function formSafeEmailFilter of the file /goform/SafeE...
CVE-2025-11422CRITICAL9.8A vulnerability has been found in Campcodes Advanced Online Voting Management System 1.0. The impacted element is an unk...
CVE-2025-11421MEDIUM5.4A flaw has been found in code-projects Voting System 1.0. The affected element is an unknown function of the file /admin...
CVE-2025-61786LOW3.3Deno is a JavaScript, TypeScript, and WebAssembly runtime. In versions prior to 2.5.3 and 2.2.15, `Deno.FsFile.prototype...
CVE-2025-61785LOW3.3Deno is a JavaScript, TypeScript, and WebAssembly runtime. In versions prior to 2.5.3 and 2.2.15, `Deno.FsFile.prototype...
CVE-2025-48981HIGH8.6An insecure implementation of the proprietary protocol DNET in Product CGM MEDICO allows attackers within the intranet t...
CVE-2025-11420CRITICAL9.8A vulnerability was detected in code-projects E-Commerce Website 1.0. Impacted is an unknown function of the file /pages...
CVE-2025-11418CRITICAL9.8A security vulnerability has been detected in Tenda CH22 up to 1.0.0.1. This issue affects the function formWrlsafeset o...
CVE-2025-61999MEDIUM4.8OPEXUS FOIAXpress before 11.13.3.0 allows an administrative user to upload JavaScript or other content embedded in an SV...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now