CVE & Exploit Intelligence Database

Updated 3h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

338,223 CVEs tracked 53,281 with exploits 4,731 exploited in wild 1,542 CISA KEV 3,929 Nuclei templates 37,826 vendors 42,573 researchers
8,801 results Clear all
CVE-2025-53310 7.1 HIGH EPSS 0.00
Funnnny HidePost <2.3.8 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in Funnnny HidePost allows Reflected XSS. This issue affects HidePost: from n/a through 2.3.8.
CWE-352 Jun 27, 2025
CVE-2025-53308 7.1 HIGH EPSS 0.00
gopi_plus Image Slider <9.2 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in gopi_plus Image Slider With Description allows Stored XSS. This issue affects Image Slider With Description: from n/a through 9.2.
CWE-352 Jun 27, 2025
CVE-2025-53305 7.1 HIGH EPSS 0.00
Lucidcrew WP Forum <1.8.2 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in lucidcrew WP Forum Server allows Stored XSS. This issue affects WP Forum Server: from n/a through 1.8.2.
CWE-352 Jun 27, 2025
CVE-2025-53277 8.8 HIGH EPSS 0.00
IS-theme-companion <1.57 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in Infigo Software IS-theme-companion allows Object Injection. This issue affects IS-theme-companion: from n/a through 1.57.
CWE-352 Jun 27, 2025
CVE-2025-53274 7.1 HIGH EPSS 0.00
WP Permalink Translator <1.7.6 - CSRF/XSS
Cross-Site Request Forgery (CSRF) vulnerability in Hossin Asaadi WP Permalink Translator allows Stored XSS. This issue affects WP Permalink Translator: from n/a through 1.7.6.
CWE-352 Jun 27, 2025
CVE-2025-53273 4.3 MEDIUM EPSS 0.00
Slickstream <2.0.3 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in Slickstream Slickstream allows Cross Site Request Forgery. This issue affects Slickstream: from n/a through 2.0.3.
CWE-352 Jun 27, 2025
CVE-2025-53272 4.3 MEDIUM EPSS 0.00
opicron Image Cleanup <1.9.2 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in opicron Image Cleanup allows Cross Site Request Forgery. This issue affects Image Cleanup: from n/a through 1.9.2.
CWE-352 Jun 27, 2025
CVE-2025-53271 7.1 HIGH EPSS 0.00
Anton Bond Additional Order Filters for WooCommerce - Stored XSS
Cross-Site Request Forgery (CSRF) vulnerability in Anton Bond Additional Order Filters for WooCommerce allows Stored XSS. This issue affects Additional Order Filters for WooCommerce: from n/a through 1.22.
CWE-352 Jun 27, 2025
CVE-2025-53270 4.3 MEDIUM EPSS 0.00
Blend Media WordPress CTA <1.6.9 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in Blend Media WordPress CTA allows Cross Site Request Forgery. This issue affects WordPress CTA: from n/a through 1.6.9.
CWE-352 Jun 27, 2025
CVE-2025-53269 4.3 MEDIUM EPSS 0.00
My Wp Brand <1.1.3 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in imw3 My Wp Brand allows Cross Site Request Forgery. This issue affects My Wp Brand: from n/a through 1.1.3.
CWE-352 Jun 27, 2025
CVE-2025-53268 4.3 MEDIUM EPSS 0.00
ryanpcmcquen <1.5.12 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in ryanpcmcquen Import external attachments allows Cross Site Request Forgery. This issue affects Import external attachments: from n/a through 1.5.12.
CWE-352 Jun 27, 2025
CVE-2025-53267 4.3 MEDIUM EPSS 0.00
Aftab Husain Hide Admin Bar From Front End - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in Aftab Husain Hide Admin Bar From Front End allows Cross Site Request Forgery. This issue affects Hide Admin Bar From Front End: from n/a through 1.0.0.
CWE-352 Jun 27, 2025
CVE-2025-53265 5.4 MEDIUM EPSS 0.00
Virusdie <1.1.3 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in Elena Yamshikova Virusdie allows Cross Site Request Forgery. This issue affects Virusdie: from n/a through 1.1.3.
CWE-352 Jun 27, 2025
CVE-2025-53264 4.3 MEDIUM EPSS 0.00
ONet Regenerate Thumbnails <1.5 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in Konrád Koller ONet Regenerate Thumbnails allows Cross Site Request Forgery. This issue affects ONet Regenerate Thumbnails: from n/a through 1.5.
CWE-352 Jun 27, 2025
CVE-2025-53263 5.4 MEDIUM EPSS 0.00
Gravity Forms <1.3.4 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in PluginsCafe Address Autocomplete via Google for Gravity Forms allows Cross Site Request Forgery. This issue affects Address Autocomplete via Google for Gravity Forms: from n/a through 1.3.4.
CWE-352 Jun 27, 2025
CVE-2025-53262 5.4 MEDIUM EPSS 0.00
Writesonic <1.0.4 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in Writesonic Writesonic allows Cross Site Request Forgery. This issue affects Writesonic: from n/a through 1.0.4.
CWE-352 Jun 27, 2025
CVE-2025-53261 4.3 MEDIUM EPSS 0.00
macbookandrew WP YouTube Live - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in macbookandrew WP YouTube Live allows Cross Site Request Forgery. This issue affects WP YouTube Live: from n/a through 1.10.0.
CWE-352 Jun 27, 2025
CVE-2025-53254 4.3 MEDIUM EPSS 0.00
Webcraftic Cyrlitera <1.2.0 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in webcraftic Cyrlitera allows Cross Site Request Forgery. This issue affects Cyrlitera: from n/a through 1.2.0.
CWE-352 Jun 27, 2025
CVE-2025-53203 4.3 MEDIUM EPSS 0.00
WooCommerce PDF Invoice Builder <1.2.148 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in EDGARROJAS WooCommerce PDF Invoice Builder allows Cross Site Request Forgery. This issue affects WooCommerce PDF Invoice Builder: from n/a through 1.2.148.
CWE-352 Jun 27, 2025
CVE-2025-53197 4.3 MEDIUM EPSS 0.00
Cookiebot <4.5.8 - CSRF
Cross-Site Request Forgery (CSRF) vulnerability in cookiebot Cookiebot allows Cross Site Request Forgery. This issue affects Cookiebot: from n/a through 4.5.8.
CWE-352 Jun 27, 2025