CVE & Exploit Intelligence Database

Updated 5h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,223 CVEs tracked 53,278 with exploits 4,730 exploited in wild 1,542 CISA KEV 3,929 Nuclei templates 37,826 vendors 42,568 researchers
8,801 results Clear all
CVE-2025-58670 7.1 HIGH EPSS 0.00
Shankaranand Maurya WP Content Protection - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in Shankaranand Maurya WP Content Protection allows Stored XSS. This issue affects WP Content Protection: from n/a through 1.3.
CWE-352 Sep 22, 2025
CVE-2025-58657 7.1 HIGH EPSS 0.00
EdwardBock Grid <2.3.1 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in EdwardBock Grid allows Stored XSS. This issue affects Grid: from n/a through 2.3.1.
CWE-352 Sep 22, 2025
CVE-2025-58270 7.1 HIGH EPSS 0.00
NIX Anti-Spam Light - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in NIX Solutions Ltd NIX Anti-Spam Light allows Cross Site Request Forgery. This issue affects NIX Anti-Spam Light: from n/a through 0.0.4.
CWE-352 Sep 22, 2025
CVE-2025-58268 7.1 HIGH EPSS 0.00
WPMK PDF Generator <1.0.2 - XSS
Cross-Site Request Forgery (CSRF) vulnerability in WPMK WPMK PDF Generator allows Stored XSS. This issue affects WPMK PDF Generator: from n/a through 1.0.1.
CWE-352 Sep 22, 2025
CVE-2025-58267 7.1 HIGH EPSS 0.00
Aftabul Islam Stock Message <1.1.0 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in Aftabul Islam Stock Message allows Stored XSS. This issue affects Stock Message: from n/a through 1.1.0.
CWE-352 Sep 22, 2025
CVE-2025-58262 7.1 HIGH EPSS 0.00
wpdirectorykit <1.0.6 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in wpdirectorykit Sweet Energy Efficiency allows Stored XSS. This issue affects Sweet Energy Efficiency: from n/a through 1.0.6.
CWE-352 Sep 22, 2025
CVE-2025-58261 7.1 HIGH EPSS 0.00
PressPage Mavis <1.4.3 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in PressPage Entertainment Inc Mavis HTTPS to HTTP Redirection allows Stored XSS. This issue affects Mavis HTTPS to HTTP Redirection: from n/a through 1.4.3.
CWE-352 Sep 22, 2025
CVE-2025-58259 7.1 HIGH EPSS 0.00
scriptsbundle Nokri <1.6.4 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in scriptsbundle Nokri allows Cross Site Request Forgery. This issue affects Nokri: from n/a through 1.6.4.
CWE-352 Sep 22, 2025
CVE-2025-58255 9.6 CRITICAL EPSS 0.00
yonisink Custom Post Type Images <0.6 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in yonisink Custom Post Type Images allows Code Injection. This issue affects Custom Post Type Images: from n/a through 0.5.
CWE-352 Sep 22, 2025
CVE-2025-58250 8.8 HIGH EPSS 0.00
ApusTheme Findgo - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in ApusTheme Findgo allows Authentication Bypass. This issue affects Findgo: from n/a through 1.3.55.
CWE-352 Sep 22, 2025
CVE-2025-58244 8.8 HIGH EPSS 0.00
Anps Constructo <4.3.9 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in Anps Constructo allows Object Injection. This issue affects Constructo: from n/a through 4.3.9.
CWE-352 Sep 22, 2025
CVE-2025-58236 4.3 MEDIUM EPSS 0.00
Mayo Moriyama Force Update Translations - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in Mayo Moriyama Force Update Translations allows Cross Site Request Forgery. This issue affects Force Update Translations: from n/a through 0.5.
CWE-352 Sep 22, 2025
CVE-2025-58224 5.4 MEDIUM EPSS 0.00
Printeers Print & Ship <1.17.0 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in Printeers Printeers Print & Ship allows Cross Site Request Forgery. This issue affects Printeers Print & Ship: from n/a through 1.17.0.
CWE-352 Sep 22, 2025
CVE-2025-58219 4.3 MEDIUM EPSS 0.00
LIJE Show Pages List <1.2.0 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in LIJE Show Pages List allows Cross Site Request Forgery. This issue affects Show Pages List: from n/a through 1.2.0.
CWE-352 Sep 22, 2025
CVE-2025-58200 4.3 MEDIUM EPSS 0.00
Bage Flexible FAQ - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in Bage Flexible FAQ allows Cross Site Request Forgery. This issue affects Flexible FAQ: from n/a through 0.2.
CWE-352 Sep 22, 2025
CVE-2025-58199 4.3 MEDIUM EPSS 0.00
Fastly - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in Fastly Fastly allows Cross Site Request Forgery. This issue affects Fastly: from n/a through 1.2.28.
CWE-352 Sep 22, 2025
CVE-2025-58032 4.3 MEDIUM EPSS 0.00
Bytes.co WP Compiler - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in Bytes.co WP Compiler allows Cross Site Request Forgery. This issue affects WP Compiler: from n/a through 1.0.0.
CWE-352 Sep 22, 2025
CVE-2025-58014 4.3 MEDIUM EPSS 0.00
Ays-pro Quiz Maker < 6.7.0.61 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in Ays Pro Quiz Maker allows Cross Site Request Forgery. This issue affects Quiz Maker: from n/a through 6.7.0.61.
CWE-352 Sep 22, 2025
CVE-2025-58013 8.8 HIGH EPSS 0.00
CouponXxL <4.5.0 - CSRF/Privilege Escalation
Cross-Site Request Forgery (CSRF) vulnerability in pebas CouponXxL allows Privilege Escalation. This issue affects CouponXxL: from n/a through 4.5.0.
CWE-352 Sep 22, 2025
CVE-2025-58010 4.3 MEDIUM EPSS 0.00
straightvisions GmbH SV Proven Expert - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in straightvisions GmbH SV Proven Expert allows Cross Site Request Forgery. This issue affects SV Proven Expert: from n/a through 2.0.06.
CWE-352 Sep 22, 2025