2025 CVE Vulnerabilities
45,321 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-62132 | MEDIUM | 4.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in Strategy11 Team Tasty Recipes Lite tasty-recipes-lite allows Exploiting Incorrect... |
| CVE-2025-62131 | MEDIUM | 4.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in Strategy11 Team Tasty Recipes Lite tasty-recipes-lite allows Exploiting Incorrect... |
| CVE-2025-62130 | MEDIUM | 4.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in wpdiscover Accordion Slider Gallery accordion-slider-gallery allows Exploiting In... |
| CVE-2025-62129 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in Magnigenie RestroPress restropress allows Exploiting Incorrectly Configured Acces... |
| CVE-2025-62126 | MEDIUM | 5.3 | 0.7% | Dec 31, 2025 | Insertion of Sensitive Information Into Sent Data vulnerability in Razvan Stanga Varnish/Nginx Proxy Caching vcaching al... |
| CVE-2025-62122 | MEDIUM | 5.3 | 0.3% | Dec 31, 2025 | Missing Authorization vulnerability in solwininfotech Trash Duplicate and 301 Redirect trash-duplicate-and-301-redirect ... |
| CVE-2025-62116 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in quadlayers AI Copilot ai-copilot allows Exploiting Incorrectly Configured Access ... |
| CVE-2025-62114 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in marcelotorres Download Media... |
| CVE-2025-62092 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in Wiremo Wiremo woo-reviews-by-wiremo allows Exploiting Incorrectly Configured Acce... |
| CVE-2025-62089 | MEDIUM | 4.3 | 0.1% | Dec 31, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in MERGADO Mergado Pack mergado-marketing-pack allows Cross Site Request... |
| CVE-2025-62087 | MEDIUM | 4.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in Web Builder 143 Sticky Notes for WP Dashboard wb-sticky-notes allows Exploiting I... |
| CVE-2025-62084 | MEDIUM | 4.3 | 0.1% | Dec 31, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Imdad Next Web iNext Woo Pincode Checker inext-woo-pincode-checker al... |
| CVE-2025-62080 | MEDIUM | 4.3 | 0.1% | Dec 31, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in Channelize.io Team Live Shopping & Shoppable Videos For WooCommerce l... |
| CVE-2025-62079 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in Damian WP Export Categories & Taxonomies wp-export-categories-taxonomies allows E... |
| CVE-2025-59136 | MEDIUM | 5.3 | 0.6% | Dec 31, 2025 | Insertion of Sensitive Information Into Sent Data vulnerability in Efí Bank Gerencianet Oficial woo-gerencianet-official... |
| CVE-2025-59130 | MEDIUM | 4.3 | 0.1% | Dec 31, 2025 | Cross-Site Request Forgery (CSRF) vulnerability in appointify Appointify appointify allows Cross Site Request Forgery.Th... |
| CVE-2025-49356 | MEDIUM | 4.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in Mykola Lukin Orders Chat for WooCommerce orders-chat-for-woocommerce allows Explo... |
| CVE-2025-49338 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in Flowbox Flowbox flowbox allows Exploiting Incorrectly Configured Access Control S... |
| CVE-2025-49334 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Authorization Bypass Through User-Controlled Key vulnerability in Eduardo Villão MyD Delivery myd-delivery allows Exploi... |
| CVE-2025-63053 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Authorization Bypass Through User-Controlled Key vulnerability in Liton Arefin Master Addons for Elementor master-addons... |
| CVE-2025-63031 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in WP Grids EasyTest convertpro allows Exploiting Incorrectly Configured Access Cont... |
| CVE-2025-63022 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in topdevs.net Simple Like Page simple-facebook-plugin allows Exploiting Incorrectly... |
| CVE-2025-63016 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in quadlayers QuadLayers TikTok Feed wp-tiktok-feed allows Exploiting Incorrectly Co... |
| CVE-2025-63001 | MEDIUM | 5.3 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in nicdark Hotel Booking nd-booking allows Exploiting Incorrectly Configured Access ... |
| CVE-2025-62888 | MEDIUM | 5.4 | 0.2% | Dec 31, 2025 | Missing Authorization vulnerability in Marco Milesi WP Attachments wp-attachments allows Exploiting Incorrectly Configur... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now