2025 CVE Vulnerabilities
45,223 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-31533 | MEDIUM | 5.3 | 0.4% | Mar 31, 2025 | Missing Authorization vulnerability in Salesmate.io Salesmate Add-On for Gravity Forms gf-salesmate-add-on allows Access... |
| CVE-2025-31532 | MEDIUM | 6.5 | 0.2% | Mar 31, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Team AtomChat Atom... |
| CVE-2025-31530 | MEDIUM | 4.3 | 0.2% | Mar 31, 2025 | Missing Authorization vulnerability in Smackcoders Inc., Google SEO Pressor Snippet google-seo-author-snippets allows Ex... |
| CVE-2025-31529 | MEDIUM | 4.3 | 0.2% | Mar 31, 2025 | Missing Authorization vulnerability in Rashid Slider Path for Elementor slider-path allows Exploiting Incorrectly Config... |
| CVE-2025-31528 | MEDIUM | 4.3 | 0.2% | Mar 31, 2025 | Missing Authorization vulnerability in wokamoto StaticPress staticpress allows Exploiting Incorrectly Configured Access ... |
| CVE-2025-31527 | MEDIUM | 6.4 | 0.2% | Mar 31, 2025 | Server-Side Request Forgery (SSRF) vulnerability in Kishan WP Link Preview wp-link-preview allows Server Side Request Fo... |
| CVE-2025-2996 | MEDIUM | 5.3 | 0.7% | Mar 31, 2025 | A vulnerability was found in Tenda FH1202 1.2.0.14(408) and classified as critical. This issue affects some unknown proc... |
| CVE-2025-2995 | MEDIUM | 6.9 | 0.7% | Mar 31, 2025 | A vulnerability has been found in Tenda FH1202 1.2.0.14(408) and classified as critical. This vulnerability affects unkn... |
| CVE-2025-2994 | MEDIUM | 6.9 | 0.6% | Mar 31, 2025 | A vulnerability, which was classified as critical, was found in Tenda FH1202 1.2.0.14(408). This affects an unknown part... |
| CVE-2025-2993 | MEDIUM | 6.9 | 8.5% | Mar 31, 2025 | A vulnerability, which was classified as critical, has been found in Tenda FH1202 1.2.0.14(408). Affected by this issue ... |
| CVE-2025-3027 | MEDIUM | 6.1 | 0.2% | Mar 31, 2025 | The vulnerability exists in the EJBCA service, version 8.0 Enterprise. By making a small change to the PATH of the URL a... |
| CVE-2025-3026 | MEDIUM | 6.1 | 0.2% | Mar 31, 2025 | The vulnerability exists in the EJBCA service, version 8.0 Enterprise. Not tested in higher versions. By modifying the ‘... |
| CVE-2025-31419 | MEDIUM | 6.5 | 0.2% | Mar 31, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themeix Churel all... |
| CVE-2025-30963 | MEDIUM | 6.5 | 0.2% | Mar 31, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Crocoblock JetSmar... |
| CVE-2025-2992 | MEDIUM | 6.9 | 0.6% | Mar 31, 2025 | A vulnerability classified as critical was found in Tenda FH1202 1.2.0.14(408). Affected by this vulnerability is an unk... |
| CVE-2025-2991 | MEDIUM | 6.9 | 0.5% | Mar 31, 2025 | A vulnerability classified as critical has been found in Tenda FH1202 1.2.0.14(408). Affected is an unknown function of ... |
| CVE-2025-31386 | MEDIUM | 5.3 | 0.2% | Mar 31, 2025 | Missing Authorization vulnerability in simplepress Simple:Press simplepress allows Exploiting Incorrectly Configured Acc... |
| CVE-2025-31376 | MEDIUM | 4.3 | 0.2% | Mar 31, 2025 | Missing Authorization vulnerability in Mayeenul Islam NanoSupport nanosupport allows Exploiting Incorrectly Configured A... |
| CVE-2025-2990 | MEDIUM | 6.9 | 0.6% | Mar 31, 2025 | A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been rated as critical. This issue affects some unknown ... |
| CVE-2025-2989 | MEDIUM | 6.9 | 0.6% | Mar 31, 2025 | A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been declared as critical. This vulnerability affects un... |
| CVE-2025-31410 | MEDIUM | 4.3 | 0.1% | Mar 31, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Ashish Ajani WP Church Donation wp-church-donation allows Cross Site ... |
| CVE-2025-31406 | MEDIUM | 4.3 | 0.3% | Mar 31, 2025 | Missing Authorization vulnerability in ELEXtensions ELEX WooCommerce Request a Quote elex-request-a-quote allows Exploit... |
| CVE-2025-30961 | MEDIUM | 6.5 | 0.2% | Mar 31, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in tinuzz Trackserver... |
| CVE-2025-2072 | MEDIUM | 5.1 | 0.3% | Mar 31, 2025 | A Reflected Cross-Site Scripting (XSS) vulnerability has been discovered in FAST LTA Silent Brick WebUI, allowing attack... |
| CVE-2025-2983 | MEDIUM | 5.5 | 0.9% | Mar 31, 2025 | A vulnerability has been found in Legrand SMS PowerView 1.x and classified as critical. Affected by this vulnerability i... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now