2025 CVE Vulnerabilities

45,223 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-31533MEDIUM5.3Missing Authorization vulnerability in Salesmate.io Salesmate Add-On for Gravity Forms gf-salesmate-add-on allows Access...
CVE-2025-31532MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Team AtomChat Atom...
CVE-2025-31530MEDIUM4.3Missing Authorization vulnerability in Smackcoders Inc., Google SEO Pressor Snippet google-seo-author-snippets allows Ex...
CVE-2025-31529MEDIUM4.3Missing Authorization vulnerability in Rashid Slider Path for Elementor slider-path allows Exploiting Incorrectly Config...
CVE-2025-31528MEDIUM4.3Missing Authorization vulnerability in wokamoto StaticPress staticpress allows Exploiting Incorrectly Configured Access ...
CVE-2025-31527MEDIUM6.4Server-Side Request Forgery (SSRF) vulnerability in Kishan WP Link Preview wp-link-preview allows Server Side Request Fo...
CVE-2025-2996MEDIUM5.3A vulnerability was found in Tenda FH1202 1.2.0.14(408) and classified as critical. This issue affects some unknown proc...
CVE-2025-2995MEDIUM6.9A vulnerability has been found in Tenda FH1202 1.2.0.14(408) and classified as critical. This vulnerability affects unkn...
CVE-2025-2994MEDIUM6.9A vulnerability, which was classified as critical, was found in Tenda FH1202 1.2.0.14(408). This affects an unknown part...
CVE-2025-2993MEDIUM6.9A vulnerability, which was classified as critical, has been found in Tenda FH1202 1.2.0.14(408). Affected by this issue ...
CVE-2025-3027MEDIUM6.1The vulnerability exists in the EJBCA service, version 8.0 Enterprise. By making a small change to the PATH of the URL a...
CVE-2025-3026MEDIUM6.1The vulnerability exists in the EJBCA service, version 8.0 Enterprise. Not tested in higher versions. By modifying the ‘...
CVE-2025-31419MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themeix Churel all...
CVE-2025-30963MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Crocoblock JetSmar...
CVE-2025-2992MEDIUM6.9A vulnerability classified as critical was found in Tenda FH1202 1.2.0.14(408). Affected by this vulnerability is an unk...
CVE-2025-2991MEDIUM6.9A vulnerability classified as critical has been found in Tenda FH1202 1.2.0.14(408). Affected is an unknown function of ...
CVE-2025-31386MEDIUM5.3Missing Authorization vulnerability in simplepress Simple:Press simplepress allows Exploiting Incorrectly Configured Acc...
CVE-2025-31376MEDIUM4.3Missing Authorization vulnerability in Mayeenul Islam NanoSupport nanosupport allows Exploiting Incorrectly Configured A...
CVE-2025-2990MEDIUM6.9A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been rated as critical. This issue affects some unknown ...
CVE-2025-2989MEDIUM6.9A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been declared as critical. This vulnerability affects un...
CVE-2025-31410MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Ashish Ajani WP Church Donation wp-church-donation allows Cross Site ...
CVE-2025-31406MEDIUM4.3Missing Authorization vulnerability in ELEXtensions ELEX WooCommerce Request a Quote elex-request-a-quote allows Exploit...
CVE-2025-30961MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in tinuzz Trackserver...
CVE-2025-2072MEDIUM5.1A Reflected Cross-Site Scripting (XSS) vulnerability has been discovered in FAST LTA Silent Brick WebUI, allowing attack...
CVE-2025-2983MEDIUM5.5A vulnerability has been found in Legrand SMS PowerView 1.x and classified as critical. Affected by this vulnerability i...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now