2025 CVE Vulnerabilities
45,138 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-62154 | MEDIUM | 4.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in recorp AI Content Writing Assistant (Content Writer, ChatGPT, Image Generator) Al... |
| CVE-2025-62150 | MEDIUM | 4.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in themesawesome History Timeline timeline-awesome allows Exploiting Incorrectly Con... |
| CVE-2025-62148 | MEDIUM | 4.3 | 0.1% | Dec 31, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Eugen Bobrowski Robots.txt rewrite robotstxt-rewrite allows Cross Sit... |
| CVE-2025-62143 | MEDIUM | 4.3 | 0.2% | Dec 31, 2025 | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in nicashmu Post Video Players ... |
| CVE-2025-62133 | MEDIUM | 4.3 | 0.1% | Dec 31, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in manidoraisamy FormFacade formfacade allows Cross Site Request Forgery... |
| CVE-2025-62132 | MEDIUM | 4.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in Strategy11 Team Tasty Recipes Lite tasty-recipes-lite allows Exploiting Incorrect... |
| CVE-2025-62131 | MEDIUM | 4.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in Strategy11 Team Tasty Recipes Lite tasty-recipes-lite allows Exploiting Incorrect... |
| CVE-2025-62130 | MEDIUM | 4.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in wpdiscover Accordion Slider Gallery accordion-slider-gallery allows Exploiting In... |
| CVE-2025-62129 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in Magnigenie RestroPress restropress allows Exploiting Incorrectly Configured Acces... |
| CVE-2025-62126 | MEDIUM | 5.3 | 0.7% | Dec 31, 2025 | Insertion of Sensitive Information Into Sent Data vulnerability in Razvan Stanga Varnish/Nginx Proxy Caching vcaching al... |
| CVE-2025-62122 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in solwininfotech Trash Duplicate and 301 Redirect trash-duplicate-and-301-redirect ... |
| CVE-2025-62116 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in quadlayers AI Copilot ai-copilot allows Exploiting Incorrectly Configured Access ... |
| CVE-2025-62114 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in marcelotorres Download Media... |
| CVE-2025-62092 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in Wiremo Wiremo woo-reviews-by-wiremo allows Exploiting Incorrectly Configured Acce... |
| CVE-2025-62089 | MEDIUM | 4.3 | 0.1% | Dec 31, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in MERGADO Mergado Pack mergado-marketing-pack allows Cross Site Request... |
| CVE-2025-62087 | MEDIUM | 4.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in Web Builder 143 Sticky Notes for WP Dashboard wb-sticky-notes allows Exploiting I... |
| CVE-2025-62084 | MEDIUM | 4.3 | 0.1% | Dec 31, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Imdad Next Web iNext Woo Pincode Checker inext-woo-pincode-checker al... |
| CVE-2025-62080 | MEDIUM | 4.3 | 0.1% | Dec 31, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Channelize.io Team Live Shopping & Shoppable Videos For WooCommerce l... |
| CVE-2025-62079 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in Damian WP Export Categories & Taxonomies wp-export-categories-taxonomies allows E... |
| CVE-2025-59136 | MEDIUM | 5.3 | 0.6% | Dec 31, 2025 | Insertion of Sensitive Information Into Sent Data vulnerability in Efí Bank Gerencianet Oficial woo-gerencianet-official... |
| CVE-2025-59130 | MEDIUM | 4.3 | 0.1% | Dec 31, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in appointify Appointify appointify allows Cross Site Request Forgery.Th... |
| CVE-2025-49356 | MEDIUM | 4.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in Mykola Lukin Orders Chat for WooCommerce orders-chat-for-woocommerce allows Explo... |
| CVE-2025-49338 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in Flowbox Flowbox flowbox allows Exploiting Incorrectly Configured Access Control S... |
| CVE-2025-49334 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Authorization Bypass Through User-Controlled Key vulnerability in Eduardo Villão MyD Delivery myd-delivery allows Exploi... |
| CVE-2025-63053 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Authorization Bypass Through User-Controlled Key vulnerability in Liton Arefin Master Addons for Elementor master-addons... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now