2025 CVE Vulnerabilities
45,223 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-30864 | MEDIUM | 4.3 | 0.4% | Mar 27, 2025 | Missing Authorization vulnerability in falselight Exchange Rates exchange-rates allows Exploiting Incorrectly Configured... |
| CVE-2025-30863 | MEDIUM | 4.3 | 0.2% | Mar 27, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in CRM Perks Integration for Google Sheets and Contact Form 7, WPForms, ... |
| CVE-2025-30862 | MEDIUM | 4.3 | 0.2% | Mar 27, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in sminozzi reCAPTCHA for all recaptcha-for-all allows Cross Site Reques... |
| CVE-2025-30861 | MEDIUM | 4.9 | 0.6% | Mar 27, 2025 | Missing Authorization vulnerability in Rustaurius Five Star Restaurant Reservations restaurant-reservations allows Explo... |
| CVE-2025-30860 | MEDIUM | 6.5 | 0.3% | Mar 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jory Hogeveen Off-... |
| CVE-2025-30859 | MEDIUM | 4.7 | 0.4% | Mar 27, 2025 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in guru-aliexpress AliNext ali2woo-lite allows Phishin... |
| CVE-2025-30856 | MEDIUM | 4.3 | 0.2% | Mar 27, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in theme funda Custom Field For WP Job Manager custom-field-for-wp-job-m... |
| CVE-2025-30854 | MEDIUM | 4.3 | 0.2% | Mar 27, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Vollstart Serial Codes Generator and Validator with WooCommerce Suppo... |
| CVE-2025-30851 | MEDIUM | 4.3 | 0.3% | Mar 27, 2025 | Missing Authorization vulnerability in Tickera Tickera tickera-event-ticketing-system allows Exploiting Incorrectly Conf... |
| CVE-2025-30850 | MEDIUM | 6.5 | 0.3% | Mar 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sfaerber Dr. Flex ... |
| CVE-2025-30847 | MEDIUM | 5.9 | 0.3% | Mar 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ashley Novelist no... |
| CVE-2025-30842 | MEDIUM | 4.3 | 0.2% | Mar 27, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in pixolette Christmas Panda christmas-panda allows Cross Site Request F... |
| CVE-2025-30839 | MEDIUM | 5.3 | 0.5% | Mar 27, 2025 | Missing Authorization vulnerability in magepeopleteam Taxi Booking Manager for WooCommerce ecab-taxi-booking-manager all... |
| CVE-2025-30838 | MEDIUM | 6.5 | 0.3% | Mar 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CozyThemes Cozy Bl... |
| CVE-2025-30836 | MEDIUM | 6.5 | 0.3% | Mar 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LatePoint LatePoin... |
| CVE-2025-30833 | MEDIUM | 4.3 | 0.2% | Mar 27, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Soft8Soft LLC Verge3D verge3d allows Cross Site Request Forgery.This ... |
| CVE-2025-30832 | MEDIUM | 6.5 | 0.3% | Mar 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in themifyme Themify ... |
| CVE-2025-30830 | MEDIUM | 5.3 | 0.4% | Mar 27, 2025 | Missing Authorization vulnerability in Hossni Mubarak Cool Author Box hm-cool-author-box-widget allows Exploiting Incorr... |
| CVE-2025-30828 | MEDIUM | 5.3 | 0.4% | Mar 27, 2025 | Missing Authorization vulnerability in Arraytics Timetics timetics allows Exploiting Incorrectly Configured Access Contr... |
| CVE-2025-30826 | MEDIUM | 6.5 | 0.3% | Mar 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pierre Lannoy IP L... |
| CVE-2025-30824 | MEDIUM | 5.4 | 0.5% | Mar 27, 2025 | Missing Authorization vulnerability in Israpil Textmetrics webtexttool allows Exploiting Incorrectly Configured Access C... |
| CVE-2025-30823 | MEDIUM | 4.3 | 0.2% | Mar 27, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Boone Gorges Anthologize anthologize allows Cross Site Request Forger... |
| CVE-2025-30822 | MEDIUM | 4.3 | 0.2% | Mar 27, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Hakik Zaman Custom Login Logo ideal-wp-login-logo-changer allows Cros... |
| CVE-2025-30821 | MEDIUM | 5.3 | 0.5% | Mar 27, 2025 | Missing Authorization vulnerability in otacke SNORDIAN's H5PxAPIkatchu h5pxapikatchu allows Accessing Functionality Not ... |
| CVE-2025-30818 | MEDIUM | 6.5 | 0.3% | Mar 27, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in mlaza jAlbum Bridg... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now