πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 26, 2026
Last Updated

40,383 vulnerabilities found (page 1112 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
ec6a4709-4cba-4068-860c-300deb741e73 MEDIUM 5.3 The Product Price by Formula for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing … wordfence
ec52337f-bdd1-4632-853b-da86d64751e7 MEDIUM 5.3 The Spice Starter Sites plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabil… wordfence
ec3e7a3b-a9c9-48d4-b2f5-e4090a15ef1f
< 4.4.0
MEDIUM 5.3 The EasyPay plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 4.3.0… wordfence
ec2181cb-dfb2-43d5-90e8-c68d0d98c98b MEDIUM 5.3 The WordPress RokBox plugin is vulnerable to Abuse of Functionality via the 'src' parameter in the 'thumb.php' file in v… wordfence
ec02bef4-8b0c-4097-aedd-ea1a980d4a70 MEDIUM 5.3 The WPCargo Track & Trace plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on… wordfence
ec005f9f-3f63-4d73-9bd5-dc9c4c4b8bfe MEDIUM 5.3 The Cowidgets – Elementor Addons plugin for WordPress is vulnerable to Information Exposure in all versions up to, and… wordfence
ebed1706-0790-447a-a535-4a46a8257f79
< 2.2.1
MEDIUM 5.3 The ALD – Dropshipping and Fulfillment for AliExpress and WooCommerce plugin for WordPress is vulnerable to unauthoriz… wordfence
ebeb34bd-0704-42ab-932e-304d8ae42d35
< 1.0.5
MEDIUM 5.3 The VW Food Corner theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a funct… wordfence
ebe431a7-b552-4891-9784-c6a7353228da
< 5.8002
MEDIUM 5.3 The Ebook Store plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 5.8001.… wordfence
ebb76379-0cac-47c6-a0eb-34780bc837bc MEDIUM 5.3 The DiveBook plugin 1.1.4 for WordPress is prone to improper access control in the Log Dive form because it fails to per… wordfence
eb9c5a81-ef7e-4b40-b1c7-619fc2731623
< 4.0.0
MEDIUM 5.3 The WP Document Revisions plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on… wordfence
eb958362-c1df-4042-b284-7339b8ff8efb
< 1.1.13
MEDIUM 5.3 The Abandoned Cart Recovery for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing c… wordfence
eb8af5d6-8b98-4a87-a588-0af74af2cd50
< 1.4.26
MEDIUM 5.3 The Royal MCP plugin for WordPress is vulnerable to unauthorized access in versions up to, and including, 1.4.25. This i… wordfence
eb830ad3-50ba-4dfe-becb-351b227706c1
< 2.3.0
MEDIUM 5.3 The ReviewX – WooCommerce Product Reviews with Multi-Criteria, Reminder Emails, Google Reviews, Schema & More plugin f… wordfence
eb79c684-1495-4bc7-bc80-a62de67d097b
< 6.0.1
MEDIUM 5.3 The Conekta Payment Gateway plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, … wordfence
eb717d64-8979-4a6a-bdba-32d43cc8f4d4 MEDIUM 5.3 The JobBoard Job listing plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up … wordfence
eb6bbbbb-b201-4fd5-8ee1-2369fb27070f
< 2.0.2
MEDIUM 5.3 The WordPress Mobile Pack plugin before 2.0.2 for WordPress does not properly restrict access to password protected post… wordfence
eb584c65-7068-4c98-a09d-f8c2efad4ab5
< 6.9.1
MEDIUM 5.3 The Bit File Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and includi… wordfence
eb56da48-c928-42d4-8c71-de72f879d430
< 3.7.15
MEDIUM 5.3 WordPress before 4.5.3 allows remote attackers to bypass intended password-change restrictions by leveraging knowledge o… wordfence
eb4487e3-4276-4a7e-bf6f-e8ec49bb29f2
< 4.0.29
MEDIUM 5.3 The ARMember – Membership Plugin, Content Restriction, Member Levels, User Profile & User signup plugin for WordPress … wordfence
eb38024c-880d-4d22-b81a-412d46183e1b
< 2.1.0
MEDIUM 5.3 The AI ChatBot with ChatGPT and Content Generator by AYS plugin for WordPress is vulnerable to Sensitive Information Exp… wordfence
eb1948bd-c5b4-4fbe-9aa6-19f24325e6bb
< 2.16.5
MEDIUM 5.3 The Paid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content Restriction plugin for WordPr… wordfence
eaf17a09-3e35-4df8-acb9-7829942597c6
< 4.0.2
MEDIUM 5.3 The Woffice CRM theme for WordPress is vulnerable to authorization bypass due to a missing capability check on the woffi… wordfence
ead87d8b-2659-4e8b-a0b9-138b1db89e36
< 27.1
MEDIUM 5.3 The Online Scheduling and Appointment Booking System – Bookly plugin for WordPress is vulnerable to price manipulation… wordfence
eabfdf29-eca9-4e4b-b809-23a83f5a91ac
< 1.9.3
MEDIUM 5.3 The Subscriptions for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missi… wordfence
← Prev 1109 1110 1111 1112 1113 1114 1115 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top