2025 CVE Vulnerabilities

45,224 CVEs published in 2025.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2025-30529MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Sébastien Dumont Auto Load Next Post auto-load-next-post allows Cross...
CVE-2025-30527MEDIUM5.9Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in codetoolbox My Boo...
CVE-2025-30526MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in lucksy Typekit plugin for WordPress typekit allows Cross Site Request...
CVE-2025-30521MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in giangmd93 GP Back To Top gp-back-to-top allows Cross Site Request For...
CVE-2025-2702MEDIUM6.3A vulnerability, which was classified as critical, has been found in Softwin WMX3 3.1. This issue affects the function I...
CVE-2025-2700MEDIUM5.4A vulnerability classified as problematic has been found in michelson Dante Editor up to 0.4.4. This affects an unknown ...
CVE-2025-2699MEDIUM5.4A vulnerability was found in GetmeUK ContentTools up to 1.6.16. It has been rated as problematic. Affected by this issue...
CVE-2025-2688MEDIUM5.3A vulnerability classified as problematic was found in TOTOLINK A3000RU up to 5.9c.5185. Affected by this vulnerability ...
CVE-2025-2686MEDIUM6.9A vulnerability has been found in mingyuefusu 明月复苏 tushuguanlixitong 图书管理系统 up to d4836f6b49cd0ac79a4021b15ce99ff7229d46...
CVE-2025-2673MEDIUM5.4A vulnerability classified as problematic has been found in code-projects Payroll Management System 1.0. Affected is an ...
CVE-2025-2671MEDIUM6.3A vulnerability was found in Yue Lao Blind Box 月老盲盒 up to 4.0. It has been declared as critical. This vulnerability affe...
CVE-2025-29806MEDIUM6.5No cwe for this issue in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
CVE-2025-2653MEDIUM5.3A vulnerability was found in FoxCMS 1.25 and classified as problematic. Affected by this issue is some unknown functiona...
CVE-2025-30474MEDIUM5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Commons VFS. The FtpFileObject class...
CVE-2025-2651MEDIUM6.9A vulnerability, which was classified as problematic, was found in SourceCodester Online Eyewear Shop 1.0. Affected is a...
CVE-2025-2650MEDIUM6.1A vulnerability, which was classified as problematic, has been found in PHPGurukul Medical Card Generation System 1.0. T...
CVE-2025-2645MEDIUM6.1A vulnerability was found in PHPGurukul Art Gallery Management System 1.0. It has been classified as problematic. Affect...
CVE-2025-0718MEDIUM4.8The Nested Pages WordPress plugin before 3.2.13 does not sanitise and escape some of its settings, which could allow hig...
CVE-2025-2639MEDIUM5.3A vulnerability has been found in JIZHICMS up to 1.7.0 and classified as problematic. This vulnerability affects unknown...
CVE-2025-2638MEDIUM5.3A vulnerability, which was classified as problematic, was found in JIZHICMS up to 1.7.0. This affects an unknown part of...
CVE-2025-2637MEDIUM5.3A vulnerability, which was classified as problematic, has been found in JIZHICMS up to 1.7.0. Affected by this issue is ...
CVE-2025-2625MEDIUM4.9A vulnerability classified as critical has been found in westboy CicadasCMS 1.0. This affects an unknown part of the fil...
CVE-2025-2623MEDIUM5.4A vulnerability was found in westboy CicadasCMS 1.0. It has been declared as problematic. Affected by this vulnerability...
CVE-2025-2617MEDIUM4.8A vulnerability classified as problematic was found in yangyouwang 杨有旺 crud 简约后台管理系统 1.0.0. Affected by this vulnerabili...
CVE-2025-26796MEDIUM5.4** UNSUPPORTED WHEN ASSIGNED ** Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vul...

Check if your code is affected by 2025 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now