πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 26, 2026
Last Updated

40,383 vulnerabilities found (page 1113 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
eaabaadf-7881-4c4f-8987-fbba8318a458
< 1.6.1
MEDIUM 5.3 The Meks Smart Social Widget plugin for WordPress is vulnerable to unauthorized admin notice dismissal due to a missing … wordfence
eaa4b7b9-ea5b-46a1-847e-027bcb1fa5a6
< 7.3.11
MEDIUM 5.3 The Quiz And Survey Master plugin for WordPress is vulnerable to Sensitive Data Exposure in versions up to, and includin… wordfence
eaa01222-28e4-4718-83c1-c7af91ad0326
< 4.14.6
MEDIUM 5.3 The GiveWP plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in … wordfence
ea976abe-128c-4c68-a260-6472ab307a55 MEDIUM 5.3 The SWM – Shopify to WooCommerce Migration plugin for WordPress is vulnerable to unauthorized access due to a missing … wordfence
ea607a56-ed6e-44dd-be42-a0b0d970742e
< 4.2.27
MEDIUM 5.3 The Store Locator Plus plugin for WordPress is vulnerable to Email Injection in versions before 4.2.27. This is due to n… wordfence
ea5c5728-fb26-486b-b2fe-8c89a2656b02
< 1.1
MEDIUM 5.3 The Schedula – Smart Appointment Booking plugin for WordPress is vulnerable to unauthorized access due to a missing ca… wordfence
ea4e6718-4e1e-44ce-8463-860f0d3d80f5
< 4.0.25
MEDIUM 5.3 The ARMember plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, … wordfence
ea49be6f-2594-4fad-8eb5-56353ee367ff
< 2.1.2
MEDIUM 5.3 The Login Page Customizer plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on… wordfence
ea489c69-d4d9-4e05-8cac-25fd17d48506
< 5.0.0
MEDIUM 5.3 The BitPay Checkout for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a mis… wordfence
ea4453bc-557b-4abf-85c6-4aecfd8f4012
< 4.6.4
MEDIUM 5.3 The WP Simple Shopping Cart plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and … wordfence
ea2e1593-56e6-4e78-a895-51a6bebeaf75
< 2.6.1
MEDIUM 5.3 The Feeds for YouTube (YouTube video, channel, and gallery plugin) plugin for WordPress is vulnerable to unauthorized ac… wordfence
ea1dc52d-fcd6-4b35-899a-3aff814073e0
< 3.11.8
MEDIUM 5.3 The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is… wordfence
ea070d9c-c04c-432f-a110-47b9eaa67614
< 5.1.7
MEDIUM 5.3 The UserPro plugin for WordPress is vulnerable to Security Feature Bypass in all versions up to, and including, 5.1.6. T… wordfence
e9fac267-043b-47c3-b17e-9287fe4b8987 MEDIUM 5.3 The Automated FedEx live/manual rates with shipping labels – HPOS supported plugin for WordPress is vulnerable to unau… wordfence
e9f486c8-0d7d-4116-8420-6af60e1cdd63
< 2.6
MEDIUM 5.3 The Accept Authorize.NET Payments Using Contact Form 7 plugin for WordPress is vulnerable to Sensitive Information Expos… wordfence
e9ec40c3-9873-4647-810b-ed546e3306bb MEDIUM 5.3 The Mayosis Core plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a functi… wordfence
e9a6521d-39b2-48f4-834b-888047619df5
< 2.4.5
MEDIUM 5.3 The MotoPress Appointment Booking plugin for WordPress is vulnerable to Authorization Bypass Through User-Controlled Key… wordfence
e99bd4ea-e758-42ac-bc14-237dbb642991
< 1.7.2
MEDIUM 5.3 The spotlight-social-photo-feeds-premium plugin for WordPress is vulnerable to Sensitive Information Exposure in all ver… wordfence
e98b0a3a-6c14-45f1-a6b2-9911ba34ce0d MEDIUM 5.3 The Thumbs Rating plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and incl… wordfence
e8f6a03f-5f4d-41e1-b69b-6ab3068b56bd
< 3.6.0
MEDIUM 5.3 The Simple Calendar – Google Calendar Plugin plugin for WordPress is vulnerable to Insecure Direct Object Reference in… wordfence
e8e6ee6f-b918-4a8c-82ea-4761f2bcbc43
< 10.3.3
MEDIUM 5.3 The Quiz And Survey Master plugin for WordPress is vulnerable to unauthorized access due to a missing capability check o… wordfence
e8c15662-e4df-4a74-bb01-266eeb4879c5
< 2.9.9.9.9.9.6
MEDIUM 5.3 The VidoRev Extensions plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on th… wordfence
e8b77b06-5f59-418a-8c94-498b2df252ad MEDIUM 5.3 The WPDB to Sql plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includin… wordfence
e8a0c18b-9caf-4667-b0f2-6477a1638347 MEDIUM 5.3 The WooCommerce Dropshipping Premium plugin for WordPress is vulnerable to unauthorized email sending due to a missing c… wordfence
e89e0697-53ab-43ae-a9bb-98e916cf06e8
< 1.1.0
MEDIUM 5.3 The Contact Form 7 GetResponse Extension plugin for WordPress is vulnerable to Sensitive Information Exposure in all ver… wordfence
← Prev 1110 1111 1112 1113 1114 1115 1116 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top