2025 CVE Vulnerabilities
45,233 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-22312 | MEDIUM | 6.5 | 0.3% | Jan 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThimPress Thim Ele... |
| CVE-2025-22310 | MEDIUM | 6.5 | 0.3% | Jan 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in marsian TemplatesN... |
| CVE-2025-22309 | MEDIUM | 6.5 | 0.3% | Jan 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in RopeSwingHld Speak... |
| CVE-2025-22308 | MEDIUM | 6.5 | 0.3% | Jan 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Takashi Kitajima S... |
| CVE-2025-22305 | MEDIUM | 6.5 | 0.5% | Jan 7, 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2025-22304 | MEDIUM | 4.3 | 0.3% | Jan 7, 2025 | Missing Authorization vulnerability in osama.esh WP Visitor Statistics (Real Time Traffic) wp-stats-manager allows Explo... |
| CVE-2025-22302 | MEDIUM | 5.3 | 0.3% | Jan 7, 2025 | Missing Authorization vulnerability in WP Grids WP Wand ai-content-generation allows Exploiting Incorrectly Configured A... |
| CVE-2025-22301 | MEDIUM | 5.4 | 0.2% | Jan 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in zookatron MyBookTable Bookstore mybooktable allows Cross Site Request... |
| CVE-2025-22300 | MEDIUM | 5.4 | 0.2% | Jan 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in PixelYourSite PixelYourSite – Your smart PIXEL (TAG) Manager pixelyou... |
| CVE-2025-22299 | MEDIUM | 4.3 | 0.3% | Jan 7, 2025 | Missing Authorization vulnerability in Space Codes AI for SEO ai-for-seo allows Exploiting Incorrectly Configured Access... |
| CVE-2025-22298 | MEDIUM | 4.3 | 0.3% | Jan 7, 2025 | Missing Authorization vulnerability in Hive Support Hive Support hive-support allows Exploiting Incorrectly Configured A... |
| CVE-2025-22297 | MEDIUM | 4.3 | 0.2% | Jan 7, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in aipost AI WP Writer ai-wp-writer allows Cross Site Request Forgery.Th... |
| CVE-2025-22293 | MEDIUM | 6.5 | 0.3% | Jan 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in gutentor Gutentor ... |
| CVE-2025-22261 | MEDIUM | 6.5 | 0.3% | Jan 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Marcus (aka @msyke... |
| CVE-2025-21616 | MEDIUM | 5.4 | 0.3% | Jan 6, 2025 | Plane is an open-source project management tool. A cross-site scripting (XSS) vulnerability has been identified in Plane... |
| CVE-2025-21617 | MEDIUM | 6.3 | 0.4% | Jan 6, 2025 | Guzzle OAuth Subscriber signs Guzzle requests using OAuth 1.0. Prior to 0.8.1, Nonce generation does not use sufficient ... |
| CVE-2025-21615 | MEDIUM | 5.5 | 0.2% | Jan 6, 2025 | AAT (Another Activity Tracker) is a GPS-tracking application for tracking sportive activities, with emphasis on cycling.... |
| CVE-2025-21604 | MEDIUM | 6.9 | 0.2% | Jan 6, 2025 | LangChain4j-AIDeepin is a Retrieval enhancement generation (RAG) project. Prior to 3.5.0, LangChain4j-AIDeepin uses MD5 ... |
| CVE-2025-0228 | MEDIUM | 4.8 | 0.3% | Jan 5, 2025 | A vulnerability has been found in code-projects Local Storage Todo App 1.0 and classified as problematic. This vulnerabi... |
| CVE-2025-0227 | MEDIUM | 5.3 | 0.3% | Jan 5, 2025 | A vulnerability, which was classified as problematic, was found in Tsinghua Unigroup Electronic Archives System 3.2.2108... |
| CVE-2025-0226 | MEDIUM | 5.3 | 0.4% | Jan 5, 2025 | A vulnerability, which was classified as problematic, has been found in Tsinghua Unigroup Electronic Archives System 3.2... |
| CVE-2025-0225 | MEDIUM | 5.3 | 0.5% | Jan 5, 2025 | A vulnerability classified as problematic was found in Tsinghua Unigroup Electronic Archives System 3.2.210802(62532). A... |
| CVE-2025-0224 | MEDIUM | 6.9 | 0.4% | Jan 5, 2025 | A vulnerability was found in Provision-ISR SH-4050A-2, SH-4100A-2L(MM), SH-8100A-2L(MM), SH-16200A-2(1U), SH-16200A-5(1U... |
| CVE-2025-0223 | MEDIUM | 5.5 | 0.3% | Jan 5, 2025 | A vulnerability was found in IObit Protected Folder up to 13.6.0.5. It has been classified as problematic. Affected is t... |
| CVE-2025-0222 | MEDIUM | 5.5 | 0.3% | Jan 5, 2025 | A vulnerability was found in IObit Protected Folder up to 13.6.0.5 and classified as problematic. This issue affects the... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now