πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 26, 2026
Last Updated

40,383 vulnerabilities found (page 1111 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
ee6749f5-1dd0-4687-9a86-64fd1161321b MEDIUM 5.3 The Listly: Listicles For WordPress plugin for WordPress is vulnerable to unauthorized modification of data due to a mis… wordfence
ee5ebdbf-2ea6-4d0c-adb3-af1ea53cda68 MEDIUM 5.3 The Flutterwave WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capability check … wordfence
ee39e64f-b728-4754-93ea-d9bd70c6c82c
< 1.5.0
MEDIUM 5.3 The Drag and Drop File Upload for Elementor Forms plugin for WordPress is vulnerable to arbitrary file deletion due to i… wordfence
ee1aab28-e9db-4010-ad46-ad4aec1d5dab
< 1.47.1
MEDIUM 5.3 The WP Image Zoom WordPress plugin before 1.47 did not validate its tab parameter before using it in the include_once() … wordfence
ee12b4e4-f29d-4d7a-82ef-963971951c84 MEDIUM 5.3 The Astra Security Suite – Firewall & Malware Scan plugin for WordPress is vulnerable to unauthorized access due to a … wordfence
edd4451e-fb8a-4140-8483-4d7a16b980e4
< 9.2.4
MEDIUM 5.3 The Global Gallery - WordPress Responsive Gallery plugin for WordPress is vulnerable to unauthorized access due to a mis… wordfence
eda5addb-40e2-4187-b803-34500b36be0a
< 1.2.2
MEDIUM 5.3 The Liaison Site Prober plugin for WordPress is vulnerable to Information Exposure in all versions up to and including 1… wordfence
eda37401-c404-4e06-b7f7-a9511aab61e6
< 2.6
MEDIUM 5.3 The WP Lead Capturing Pages - WordPress Plugin plugin for WordPress is vulnerable to unauthorized access due to a missin… wordfence
ed92806e-5d75-4a23-a588-821e9ada1b32
< 1.0.30
MEDIUM 5.3 The Simple Page Access Restriction plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions … wordfence
ed897280-f4c7-4129-a251-80e299baea61
< 1.5
MEDIUM 5.3 The Visual Header plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a funct… wordfence
ed82f527-b7af-4466-a977-855f109ed997 MEDIUM 5.3 The QQWorld Auto Save Images plugin for WordPress is vulnerable to unauthorized access of data due to a missing capabili… wordfence
ed81b175-071c-4967-81d9-bc4b7d35f3be
< 5.0
MEDIUM 5.3 The Leaky Paywall plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a funct… wordfence
ed6cbd55-0e3a-4343-9e1b-b413a132bcdd
< 2.1
MEDIUM 5.3 The Accept SagePay Payments Using Contact Form 7 plugin for WordPress is vulnerable to Sensitive Information Exposure in… wordfence
ed65eaa1-247e-4bb1-af72-d41962931826
< 2.7.0
MEDIUM 5.3 The Booking and Rental Manager plugin for WordPress is vulnerable to unauthorized access due to a missing capability che… wordfence
ed5cd26f-30a4-40a5-9652-c2442949d943
< 7.1.13
MEDIUM 5.3 The Theme My Login plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a func… wordfence
ed57bb85-d4b5-4c89-a1c7-c3b8a0a5a2ea
< 3.0.10
MEDIUM 5.3 The GreenPay(tm) by Green.Money plugin for WordPress is vulnerable to Sensitive Information Exposure in versions between… wordfence
ed29e101-de40-409a-8b0b-7cfac0b0822f MEDIUM 5.3 The Zorka theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in ve… wordfence
ed2511a2-745a-42a9-a78c-96e35b4cb156
< 7.7.5
MEDIUM 5.3 The The Post Grid plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability ch… wordfence
ed1eae6b-567a-41e0-9a65-172bd3246438 MEDIUM 5.3 The Pinpoint Booking System plugin for WordPress is vulnerable to unauthorized access due to a missing capability check … wordfence
ecf39f38-a476-47a8-a632-986b851895a6
< 9.2.3
MEDIUM 5.3 The NEX-Forms – Ultimate Forms Plugin for WordPress plugin for WordPress is vulnerable to authorization bypass in all … wordfence
ece6c07c-ea99-43f6-a8b7-f610e8db746e
< 1.11.1
MEDIUM 5.3 The WP Bannerize Pro plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fu… wordfence
eccea504-b8b9-46d3-b9fd-ae893528e521 MEDIUM 5.3 The EleForms – All In One Form Integration including DB for Elementor plugin for WordPress is vulnerable to unauthoriz… wordfence
ecc87d5f-dba4-40f8-946f-f2634614b579
< 2.2.3
MEDIUM 5.3 The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable … wordfence
ec8ad817-9716-4d29-a02a-57eb9aa58a13
< 1.2.1
MEDIUM 5.3 CRLF injection vulnerability in wp-login.php in WordPress 1.2 allows remote attackers to perform HTTP Response Splitting… wordfence
ec894433-53c8-4d04-bb8a-92c66cbd2ce7
< 6.0.20
MEDIUM 5.3 The Translate WordPress – Google Language Translator plugin for WordPress is vulnerable to unauthorized modification o… wordfence
← Prev 1108 1109 1110 1111 1112 1113 1114 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top