πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 26, 2026
Last Updated

40,383 vulnerabilities found (page 1110 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
ef85c1f9-b4d9-431f-ba38-1c7e5d8877aa MEDIUM 5.3 The AI Copilot plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… wordfence
ef7fcd15-a570-4a41-ab51-e803e55625a8
< 8.2
MEDIUM 5.3 The SEOPress – On-site SEO plugin for WordPress is vulnerable to unauthorized access due to a missing capability check… wordfence
ef7ef45a-612b-40ca-817d-05b3d29b2b05
< 3.5.3
MEDIUM 5.3 The Event Manager and Tickets Selling Plugin for WooCommerce plugin for WordPress is vulnerable to arbitrary template im… wordfence
ef7539d0-251c-46f9-a4c9-1ef0d6b57274
< 1.4.2
MEDIUM 5.3 The Construction Landing Page theme for WordPress is vulnerable to unauthorized access due to a missing capability check… wordfence
ef6f6383-a208-4fff-a8ca-296e0fd9d851 MEDIUM 5.3 The ListingHub plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… wordfence
ef6bbe0c-8721-4385-b0ba-ea2c64dca36b
< 3.3.6
MEDIUM 5.3 The Ninja Charts – WordPress Charts and Graphs Plugin plugin for WordPress is vulnerable to Sensitive Information Expo… wordfence
ef6bbd96-6385-4b96-af11-356b4ce6e908
< 3.7.1
MEDIUM 5.3 The Templately plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… wordfence
ef543c61-2acc-4b72-81ff-883960d4c7c3
< 3.8.0
MEDIUM 5.3 The Stripe Payment Plugin for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to… wordfence
ef2e44ea-0049-4370-abd0-0b631e3d2d37
< 1.6.11.2
MEDIUM 5.3 The Appointment Booking Calendar β€” Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable to S… wordfence
ef0f5f9d-788a-4cf8-9747-ada076a69a1f
< 1.6.11.9
MEDIUM 5.3 The Appointment Booking Calendar β€” Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable to M… wordfence
ef0abec6-7d4b-4a1f-8116-e31d60bc34b0 MEDIUM 5.3 The Connexion Logs plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including… wordfence
ef07568d-4011-4f83-8828-fe6937ee268a MEDIUM 5.3 The Delete All Posts plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fu… wordfence
eef60624-d90c-4e98-9151-3f6eb9cfe0c0
< 3.4.5
MEDIUM 5.3 The affiliate-toolkit – WordPress Affiliate Plugin plugin for WordPress is vulnerable to Sensitive Information Exposur… wordfence
eef3f041-8cb8-444d-b54e-287ca5f7c594
< 3.6.4
MEDIUM 5.3 The AI Engine plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and including, 3… wordfence
eeeb03f7-5f78-4462-b0b4-5080bbc419a3
< 4.6.5
MEDIUM 5.3 The WooCommerce Smart Coupons plugin for WordPress is vulnerable to authorization bypass due to a missing capability che… wordfence
eee7344d-5459-4558-a557-d8c5935ecc30 MEDIUM 5.3 The Change Memory Limit plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabil… wordfence
eee2d5e8-a027-486b-93d8-9fe1501f9ed2
< 1.79
MEDIUM 5.3 The reCaptcha by BestWebSoft plugin for WordPress is vulnerable to CAPTCHA Bypass in all versions up to, and including, … wordfence
eec21a44-d65c-4090-8b60-32d333c54140
< 4.0.4
MEDIUM 5.3 The Cookie Notice for GDPR, CCPA & ePrivacy Consent plugin for WordPress is vulnerable to unauthorized modification of d… wordfence
eeb4b3b1-47ae-4314-a386-832949456f81 MEDIUM 5.3 The Moosend Landing Pages plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capab… wordfence
eeb0353e-2086-4255-bb28-6bb20ab327b1
< 1.8.3
MEDIUM 5.3 The ABC Crypto Checkout plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and … wordfence
eeaf3b23-a769-4625-8c83-a9229ce1c2c9 MEDIUM 5.3 The EInvoice App Malaysia plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, an… wordfence
eea99e1e-63c9-4021-80a0-1ed732b58ca9
< 1.0.5
MEDIUM 5.3 The Wp-ImageZoom plugin for WordPress is vulnerable to Directory Traversal in versions before 1.0.5 via the 'file' param… wordfence
eea054fd-c42c-41da-956a-cc31cfe320ca
< 2.4.10
MEDIUM 5.3 The Small Package Quotes – Unishippers Edition plugin for WordPress is vulnerable to unauthorized access due to a miss… wordfence
ee9261c0-927a-4d0b-97e1-b7861e1e0b31
< 2.1.6
MEDIUM 5.3 The Directory Listings WordPress plugin – uListing plugin for WordPress is vulnerable to Information Exposure in all v… wordfence
ee8f274b-fe25-4111-94a4-e67dd17dc24b
< 1.64
MEDIUM 5.3 WP-Ban plugin before 1.64 for WordPress, when running in certain configurations, allows remote attackers to bypass the I… wordfence
← Prev 1107 1108 1109 1110 1111 1112 1113 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top