2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-53575 | HIGH | 7.1 | 0.2% | Aug 14, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in primersoftware Pri... |
| CVE-2025-53347 | MEDIUM | 4.3 | 0.1% | Aug 14, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Laborator Kalium kalium allows Cross Site Request Forgery.This issue ... |
| CVE-2025-53343 | MEDIUM | 4.3 | 0.2% | Aug 14, 2025 | Missing Authorization vulnerability in GoodLayers Modernize modernize allows Exploiting Incorrectly Configured Access Co... |
| CVE-2025-53342 | MEDIUM | 6.5 | 0.2% | Aug 14, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GoodLayers Moderni... |
| CVE-2025-53341 | MEDIUM | 4.3 | 0.2% | Aug 14, 2025 | Missing Authorization vulnerability in Themovation App, SaaS & Software Startup Tech Theme - Stratus stratusx allows Exp... |
| CVE-2025-53330 | MEDIUM | 6.5 | 0.2% | Aug 14, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WpEstate WP Rental... |
| CVE-2025-53249 | MEDIUM | 6.5 | 0.2% | Aug 14, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in hakeemnala Build App Online build-app-online allows Cross Site Reques... |
| CVE-2025-53241 | MEDIUM | 5.5 | 0.2% | Aug 14, 2025 | Server-Side Request Forgery (SSRF) vulnerability in kodeshpa Simplified simplified allows Server Side Request Forgery.Th... |
| CVE-2025-53221 | MEDIUM | 4.3 | 0.3% | Aug 14, 2025 | Missing Authorization vulnerability in codeablepress CodeablePress codeablepress-simple-frontend-profile-picture-upload ... |
| CVE-2025-53219 | MEDIUM | 5.4 | 0.1% | Aug 14, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in pl4g4 WP-Database-Optimizer-Tools wp-database-optimizer-tools allows ... |
| CVE-2025-52797 | HIGH | 8.2 | 0.1% | Aug 14, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in josepsitjar StoryMap wp-storymap allows SQL Injection.This issue affe... |
| CVE-2025-52771 | MEDIUM | 6.5 | 0.2% | Aug 14, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in bcupham Video Expa... |
| CVE-2025-52769 | MEDIUM | 4.3 | 0.1% | Aug 14, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in flexostudio flexo-social-gallery flexo-social-gallery allows Cross Si... |
| CVE-2025-52767 | MEDIUM | 4.3 | 0.1% | Aug 14, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in lisensee NetInsight Analytics Implementation Plugin netinsight-analyt... |
| CVE-2025-52765 | HIGH | 7.1 | 0.1% | Aug 14, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in lisensee NetInsight Analytics Implementation Plugin netinsight-analyt... |
| CVE-2025-8974 | CRITICAL | 9.8 | 0.5% | Aug 14, 2025 | A vulnerability was determined in linlinjava litemall up to 1.8.0. Affected by this issue is some unknown functionality ... |
| CVE-2025-8973 | CRITICAL | 9.8 | 0.4% | Aug 14, 2025 | A vulnerability has been found in SourceCodester Cashier Queuing System 1.0. Affected is an unknown function of the file... |
| CVE-2025-8972 | CRITICAL | 9.8 | 0.4% | Aug 14, 2025 | A vulnerability was identified in itsourcecode Online Tour and Travel Management System 1.0. This issue affects some unk... |
| CVE-2025-52335 | MEDIUM | 6.1 | 0.2% | Aug 14, 2025 | EyouCMS 1.7.3 is vulnerale to Cross Site Scripting (XSS) in index.php, which can be exploited to obtain sensitive inform... |
| CVE-2025-51986 | HIGH | 7.5 | 0.3% | Aug 14, 2025 | An issue was discovered in the demo/LINUXTCP implementation of cwalter-at freemodbus v.2018-09-12 allowing attackers to ... |
| CVE-2025-21110 | MEDIUM | 4.4 | 0.1% | Aug 14, 2025 | Dell Data Lakehouse, versions prior to 1.5.0.0, contains an Execution with Unnecessary Privileges vulnerability. A high ... |
| CVE-2025-9043 | MEDIUM | 6.7 | 0.1% | Aug 14, 2025 | The service executable path in Seagate Toolkit on Versions prior to 2.34.0.33 on Windows allows an attacker with Admin p... |
| CVE-2025-9039 | MEDIUM | 5.3 | 0.2% | Aug 14, 2025 | We identified an issue in the Amazon ECS agent where, under certain conditions, an introspection server could be accesse... |
| CVE-2025-8971 | CRITICAL | 9.8 | 0.4% | Aug 14, 2025 | A vulnerability was determined in itsourcecode Online Tour and Travel Management System 1.0. This vulnerability affects ... |
| CVE-2025-8970 | CRITICAL | 9.8 | 0.4% | Aug 14, 2025 | A vulnerability was found in itsourcecode Online Tour and Travel Management System 1.0. This affects an unknown part of ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now