Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1112 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| ec6a4709-4cba-4068-860c-300deb741e73 | MEDIUM | 5.3 | The Product Price by Formula for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing … | — | wordfence | |
| ec52337f-bdd1-4632-853b-da86d64751e7 | MEDIUM | 5.3 | The Spice Starter Sites plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabil… | — | wordfence | |
| ec3e7a3b-a9c9-48d4-b2f5-e4090a15ef1f | < 4.4.0 |
MEDIUM | 5.3 | The EasyPay plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 4.3.0… | — | wordfence |
| ec2181cb-dfb2-43d5-90e8-c68d0d98c98b | MEDIUM | 5.3 | The WordPress RokBox plugin is vulnerable to Abuse of Functionality via the 'src' parameter in the 'thumb.php' file in v… | — | wordfence | |
| ec02bef4-8b0c-4097-aedd-ea1a980d4a70 | MEDIUM | 5.3 | The WPCargo Track & Trace plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on… | — | wordfence | |
| ec005f9f-3f63-4d73-9bd5-dc9c4c4b8bfe | MEDIUM | 5.3 | The Cowidgets β Elementor Addons plugin for WordPress is vulnerable to Information Exposure in all versions up to, and… | — | wordfence | |
| ebed1706-0790-447a-a535-4a46a8257f79 | < 2.2.1 |
MEDIUM | 5.3 | The ALD β Dropshipping and Fulfillment for AliExpress and WooCommerce plugin for WordPress is vulnerable to unauthoriz… | — | wordfence |
| ebeb34bd-0704-42ab-932e-304d8ae42d35 | < 1.0.5 |
MEDIUM | 5.3 | The VW Food Corner theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a funct… | — | wordfence |
| ebe431a7-b552-4891-9784-c6a7353228da | < 5.8002 |
MEDIUM | 5.3 | The Ebook Store plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 5.8001.… | — | wordfence |
| ebb76379-0cac-47c6-a0eb-34780bc837bc | MEDIUM | 5.3 | The DiveBook plugin 1.1.4 for WordPress is prone to improper access control in the Log Dive form because it fails to per… | — | wordfence | |
| eb9c5a81-ef7e-4b40-b1c7-619fc2731623 | < 4.0.0 |
MEDIUM | 5.3 | The WP Document Revisions plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on… | — | wordfence |
| eb958362-c1df-4042-b284-7339b8ff8efb | < 1.1.13 |
MEDIUM | 5.3 | The Abandoned Cart Recovery for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing c… | — | wordfence |
| eb8af5d6-8b98-4a87-a588-0af74af2cd50 | < 1.4.26 |
MEDIUM | 5.3 | The Royal MCP plugin for WordPress is vulnerable to unauthorized access in versions up to, and including, 1.4.25. This i… | — | wordfence |
| eb830ad3-50ba-4dfe-becb-351b227706c1 | < 2.3.0 |
MEDIUM | 5.3 | The ReviewX β WooCommerce Product Reviews with Multi-Criteria, Reminder Emails, Google Reviews, Schema & More plugin f… | — | wordfence |
| eb79c684-1495-4bc7-bc80-a62de67d097b | < 6.0.1 |
MEDIUM | 5.3 | The Conekta Payment Gateway plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, … | — | wordfence |
| eb717d64-8979-4a6a-bdba-32d43cc8f4d4 | MEDIUM | 5.3 | The JobBoard Job listing plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up … | — | wordfence | |
| eb6bbbbb-b201-4fd5-8ee1-2369fb27070f | < 2.0.2 |
MEDIUM | 5.3 | The WordPress Mobile Pack plugin before 2.0.2 for WordPress does not properly restrict access to password protected post… | — | wordfence |
| eb584c65-7068-4c98-a09d-f8c2efad4ab5 | < 6.9.1 |
MEDIUM | 5.3 | The Bit File Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and includi… | — | wordfence |
| eb56da48-c928-42d4-8c71-de72f879d430 | < 3.7.15 |
MEDIUM | 5.3 | WordPress before 4.5.3 allows remote attackers to bypass intended password-change restrictions by leveraging knowledge o… | — | wordfence |
| eb4487e3-4276-4a7e-bf6f-e8ec49bb29f2 | < 4.0.29 |
MEDIUM | 5.3 | The ARMember β Membership Plugin, Content Restriction, Member Levels, User Profile & User signup plugin for WordPress … | — | wordfence |
| eb38024c-880d-4d22-b81a-412d46183e1b | < 2.1.0 |
MEDIUM | 5.3 | The AI ChatBot with ChatGPT and Content Generator by AYS plugin for WordPress is vulnerable to Sensitive Information Exp… | — | wordfence |
| eb1948bd-c5b4-4fbe-9aa6-19f24325e6bb | < 2.16.5 |
MEDIUM | 5.3 | The Paid Membership Subscriptions β Effortless Memberships, Recurring Payments & Content Restriction plugin for WordPr… | — | wordfence |
| eaf17a09-3e35-4df8-acb9-7829942597c6 | < 4.0.2 |
MEDIUM | 5.3 | The Woffice CRM theme for WordPress is vulnerable to authorization bypass due to a missing capability check on the woffi… | — | wordfence |
| ead87d8b-2659-4e8b-a0b9-138b1db89e36 | < 27.1 |
MEDIUM | 5.3 | The Online Scheduling and Appointment Booking System β Bookly plugin for WordPress is vulnerable to price manipulation… | — | wordfence |
| eabfdf29-eca9-4e4b-b809-23a83f5a91ac | < 1.9.3 |
MEDIUM | 5.3 | The Subscriptions for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missi… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →