2025 CVE Vulnerabilities
45,223 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-30914 | MEDIUM | 4.4 | 0.2% | Mar 27, 2025 | Server-Side Request Forgery (SSRF) vulnerability in Roxnor Metform metform allows Server Side Request Forgery.This issue... |
| CVE-2025-30912 | MEDIUM | 5.4 | 0.2% | Mar 27, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Float menu float-menu allows Cross Site Request Forgery.T... |
| CVE-2025-30909 | MEDIUM | 4.3 | 0.3% | Mar 27, 2025 | Missing Authorization vulnerability in Conversios Conversios.io enhanced-e-commerce-for-woocommerce-store allows Exploit... |
| CVE-2025-30907 | MEDIUM | 5.4 | 0.3% | Mar 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SecuPress SecuPres... |
| CVE-2025-30904 | MEDIUM | 5.9 | 0.3% | Mar 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ays Pro Chartify c... |
| CVE-2025-30903 | MEDIUM | 6.5 | 0.3% | Mar 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Alex Mills SyntaxH... |
| CVE-2025-30900 | MEDIUM | 6.5 | 0.3% | Mar 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Zoho Subscriptions... |
| CVE-2025-30899 | MEDIUM | 4.8 | 0.3% | Mar 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpeverest User Reg... |
| CVE-2025-30898 | MEDIUM | 6.5 | 0.3% | Mar 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Mahdi Yousefi [Mah... |
| CVE-2025-30897 | MEDIUM | 4.3 | 0.3% | Mar 27, 2025 | Missing Authorization vulnerability in Adnan Analytify wp-analytify allows Exploiting Incorrectly Configured Access Cont... |
| CVE-2025-30896 | MEDIUM | 5.4 | 0.3% | Mar 27, 2025 | Missing Authorization vulnerability in weDevs WP ERP erp allows Exploiting Incorrectly Configured Access Control Securit... |
| CVE-2025-30894 | MEDIUM | 4.3 | 0.3% | Mar 27, 2025 | Missing Authorization vulnerability in Epsiloncool WP Fast Total Search fulltext-search allows Exploiting Incorrectly Co... |
| CVE-2025-30893 | MEDIUM | 6.5 | 0.3% | Mar 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LeadConnector Lead... |
| CVE-2025-30888 | MEDIUM | 4.3 | 0.2% | Mar 27, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in silverplugins217 Custom Fields Account Registration For Woocommerce c... |
| CVE-2025-30887 | MEDIUM | 5.3 | 0.3% | Mar 27, 2025 | Missing Authorization vulnerability in magepeopleteam WpEvently mage-eventpress allows Exploiting Incorrectly Configured... |
| CVE-2025-30885 | MEDIUM | 4.7 | 0.4% | Mar 27, 2025 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Bit Apps Bit Form bit-form allows Phishing.This iss... |
| CVE-2025-30884 | MEDIUM | 4.7 | 0.4% | Mar 27, 2025 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Bit Apps Bit Integrations bit-integrations allows P... |
| CVE-2025-30883 | MEDIUM | 4.3 | 0.4% | Mar 27, 2025 | Missing Authorization vulnerability in richplugins Trust.Reviews fb-reviews-widget allows Exploiting Incorrectly Configu... |
| CVE-2025-30881 | MEDIUM | 5.4 | 0.3% | Mar 27, 2025 | Missing Authorization vulnerability in themehunk Big Store big-store allows Exploiting Incorrectly Configured Access Con... |
| CVE-2025-30874 | MEDIUM | 4.3 | 0.4% | Mar 27, 2025 | Missing Authorization vulnerability in Jose Mortellaro Specific Content For Mobile specific-content-for-mobile allows Ex... |
| CVE-2025-30873 | MEDIUM | 5.4 | 0.3% | Mar 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpsoul Greenshift ... |
| CVE-2025-30872 | MEDIUM | 4.3 | 0.2% | Mar 27, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Nitin Prakash Product Author for WooCommerce wc-product-author allows... |
| CVE-2025-30867 | MEDIUM | 5.4 | 0.3% | Mar 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SearchIQ SearchIQ ... |
| CVE-2025-30866 | MEDIUM | 5.3 | 0.5% | Mar 27, 2025 | Missing Authorization vulnerability in Giannis Kipouros Terms & Conditions Per Product terms-and-conditions-per-product ... |
| CVE-2025-30865 | MEDIUM | 4.3 | 0.2% | Mar 27, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in fuzzoid 3DPrint Lite 3dprint-lite allows Cross Site Request Forgery.T... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now