2025 CVE Vulnerabilities
45,255 CVEs published in 2025.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2025-8375 | CRITICAL | 9.8 | 0.5% | Jul 31, 2025 | A vulnerability was found in code-projects Vehicle Management 1.0. It has been rated as critical. This issue affects som... |
| CVE-2025-8374 | CRITICAL | 9.8 | 0.4% | Jul 31, 2025 | A vulnerability was found in code-projects Vehicle Management 1.0. It has been declared as critical. This vulnerability ... |
| CVE-2025-8192 | MEDIUM | 6.9 | 0.1% | Jul 31, 2025 | There exists a TOCTOU race condition in TvSettings AppRestrictionsFragment.java that lead to start of attacker supplied ... |
| CVE-2025-24854 | MEDIUM | 6.1 | 0.4% | Jul 31, 2025 | A carefully crafted request using the Image plugin could trigger an XSS vulnerability on Apache JSPWiki, which could al... |
| CVE-2025-24853 | HIGH | 7.5 | 0.5% | Jul 31, 2025 | A carefully crafted request when creating a header link using the wiki markup syntax, which could allow the attacker to... |
| CVE-2025-8373 | CRITICAL | 9.8 | 0.4% | Jul 31, 2025 | A vulnerability was found in code-projects Vehicle Management 1.0. It has been classified as critical. This affects an u... |
| CVE-2025-8372 | CRITICAL | 9.8 | 0.4% | Jul 31, 2025 | A vulnerability was found in code-projects Exam Form Submission 1.0 and classified as critical. Affected by this issue i... |
| CVE-2025-7205 | MEDIUM | 5.4 | 0.2% | Jul 31, 2025 | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting ... |
| CVE-2025-54757 | HIGH | 8 | 0.2% | Jul 31, 2025 | Multiple versions of PowerCMS allow unrestricted upload of dangerous files. If a product administrator accesses a malici... |
| CVE-2025-54752 | HIGH | 8 | 0.2% | Jul 31, 2025 | Multiple versions of PowerCMS improperly neutralize formula elements in a CSV file. If a product user creates a malform... |
| CVE-2025-46359 | HIGH | 8.6 | 0.5% | Jul 31, 2025 | A path traversal issue exists in backup and restore feature of multiple versions of PowerCMS. A product administrator ma... |
| CVE-2025-41396 | MEDIUM | 6.5 | 0.3% | Jul 31, 2025 | A path traversal issue exists in file uploading feature of multiple versions of PowerCMS. Arbitrary files may be overwri... |
| CVE-2025-41391 | MEDIUM | 5.4 | 0.2% | Jul 31, 2025 | Stored cross-site scripting vulnerability exists in multiple versions of PowerCMS. If a product user accesses a maliciou... |
| CVE-2025-36563 | MEDIUM | 6.1 | 0.2% | Jul 31, 2025 | Reflected cross-site scripting vulnerability exists in multiple versions of PowerCMS. If a product administrator accesse... |
| CVE-2025-8371 | CRITICAL | 9.8 | 0.5% | Jul 31, 2025 | A vulnerability has been found in code-projects Exam Form Submission 1.0 and classified as critical. Affected by this vu... |
| CVE-2025-8370 | MEDIUM | 6.1 | 0.5% | Jul 31, 2025 | A vulnerability, which was classified as problematic, was found in Portabilis i-Educar 2.9. Affected is an unknown funct... |
| CVE-2025-8369 | MEDIUM | 6.1 | 0.5% | Jul 31, 2025 | A vulnerability, which was classified as problematic, has been found in Portabilis i-Educar 2.9. This issue affects some... |
| CVE-2025-8368 | MEDIUM | 6.1 | 0.5% | Jul 31, 2025 | A vulnerability classified as problematic was found in Portabilis i-Educar 2.9. This vulnerability affects unknown code ... |
| CVE-2025-53558 | HIGH | 8.8 | 1.3% | Jul 31, 2025 | ZXHN-F660T and ZXHN-F660A provided by ZTE Japan K.K. use a common credential for all installations. With the knowledge o... |
| CVE-2025-8367 | MEDIUM | 6.1 | 0.4% | Jul 31, 2025 | A vulnerability classified as problematic has been found in Portabilis i-Educar 2.9. This affects an unknown part of the... |
| CVE-2025-8366 | MEDIUM | 6.1 | 0.4% | Jul 31, 2025 | A vulnerability was found in Portabilis i-Educar 2.9. It has been rated as problematic. Affected by this issue is some u... |
| CVE-2025-7847 | HIGH | 8.8 | 1.0% | Jul 31, 2025 | The AI Engine plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the re... |
| CVE-2025-5720 | MEDIUM | 6.4 | 0.3% | Jul 31, 2025 | The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘author’ ... |
| CVE-2025-8365 | MEDIUM | 6.1 | 0.3% | Jul 31, 2025 | A vulnerability was found in Portabilis i-Educar 2.10. It has been declared as problematic. Affected by this vulnerabili... |
| CVE-2025-8348 | HIGH | 7.5 | 0.6% | Jul 31, 2025 | A vulnerability has been found in Kehua Charging Pile Cloud Platform 1.0 and classified as critical. This vulnerability ... |
Check if your code is affected by 2025 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now