Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1113 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| eaabaadf-7881-4c4f-8987-fbba8318a458 | < 1.6.1 |
MEDIUM | 5.3 | The Meks Smart Social Widget plugin for WordPress is vulnerable to unauthorized admin notice dismissal due to a missing … | — | wordfence |
| eaa4b7b9-ea5b-46a1-847e-027bcb1fa5a6 | < 7.3.11 |
MEDIUM | 5.3 | The Quiz And Survey Master plugin for WordPress is vulnerable to Sensitive Data Exposure in versions up to, and includin… | — | wordfence |
| eaa01222-28e4-4718-83c1-c7af91ad0326 | < 4.14.6 |
MEDIUM | 5.3 | The GiveWP plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in … | — | wordfence |
| ea976abe-128c-4c68-a260-6472ab307a55 | MEDIUM | 5.3 | The SWM β Shopify to WooCommerce Migration plugin for WordPress is vulnerable to unauthorized access due to a missing … | — | wordfence | |
| ea607a56-ed6e-44dd-be42-a0b0d970742e | < 4.2.27 |
MEDIUM | 5.3 | The Store Locator Plus plugin for WordPress is vulnerable to Email Injection in versions before 4.2.27. This is due to n… | — | wordfence |
| ea5c5728-fb26-486b-b2fe-8c89a2656b02 | < 1.1 |
MEDIUM | 5.3 | The Schedula β Smart Appointment Booking plugin for WordPress is vulnerable to unauthorized access due to a missing ca… | — | wordfence |
| ea4e6718-4e1e-44ce-8463-860f0d3d80f5 | < 4.0.25 |
MEDIUM | 5.3 | The ARMember plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, … | — | wordfence |
| ea49be6f-2594-4fad-8eb5-56353ee367ff | < 2.1.2 |
MEDIUM | 5.3 | The Login Page Customizer plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on… | — | wordfence |
| ea489c69-d4d9-4e05-8cac-25fd17d48506 | < 5.0.0 |
MEDIUM | 5.3 | The BitPay Checkout for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a mis… | — | wordfence |
| ea4453bc-557b-4abf-85c6-4aecfd8f4012 | < 4.6.4 |
MEDIUM | 5.3 | The WP Simple Shopping Cart plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and … | — | wordfence |
| ea2e1593-56e6-4e78-a895-51a6bebeaf75 | < 2.6.1 |
MEDIUM | 5.3 | The Feeds for YouTube (YouTube video, channel, and gallery plugin) plugin for WordPress is vulnerable to unauthorized ac… | — | wordfence |
| ea1dc52d-fcd6-4b35-899a-3aff814073e0 | < 3.11.8 |
MEDIUM | 5.3 | The User Profile Builder β Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is… | — | wordfence |
| ea070d9c-c04c-432f-a110-47b9eaa67614 | < 5.1.7 |
MEDIUM | 5.3 | The UserPro plugin for WordPress is vulnerable to Security Feature Bypass in all versions up to, and including, 5.1.6. T… | — | wordfence |
| e9fac267-043b-47c3-b17e-9287fe4b8987 | MEDIUM | 5.3 | The Automated FedEx live/manual rates with shipping labels β HPOS supported plugin for WordPress is vulnerable to unau… | — | wordfence | |
| e9f486c8-0d7d-4116-8420-6af60e1cdd63 | < 2.6 |
MEDIUM | 5.3 | The Accept Authorize.NET Payments Using Contact Form 7 plugin for WordPress is vulnerable to Sensitive Information Expos… | — | wordfence |
| e9ec40c3-9873-4647-810b-ed546e3306bb | MEDIUM | 5.3 | The Mayosis Core plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a functi… | — | wordfence | |
| e9a6521d-39b2-48f4-834b-888047619df5 | < 2.4.5 |
MEDIUM | 5.3 | The MotoPress Appointment Booking plugin for WordPress is vulnerable to Authorization Bypass Through User-Controlled Key… | — | wordfence |
| e99bd4ea-e758-42ac-bc14-237dbb642991 | < 1.7.2 |
MEDIUM | 5.3 | The spotlight-social-photo-feeds-premium plugin for WordPress is vulnerable to Sensitive Information Exposure in all ver… | — | wordfence |
| e98b0a3a-6c14-45f1-a6b2-9911ba34ce0d | MEDIUM | 5.3 | The Thumbs Rating plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and incl… | — | wordfence | |
| e8f6a03f-5f4d-41e1-b69b-6ab3068b56bd | < 3.6.0 |
MEDIUM | 5.3 | The Simple Calendar β Google Calendar Plugin plugin for WordPress is vulnerable to Insecure Direct Object Reference in… | — | wordfence |
| e8e6ee6f-b918-4a8c-82ea-4761f2bcbc43 | < 10.3.3 |
MEDIUM | 5.3 | The Quiz And Survey Master plugin for WordPress is vulnerable to unauthorized access due to a missing capability check o… | — | wordfence |
| e8c15662-e4df-4a74-bb01-266eeb4879c5 | < 2.9.9.9.9.9.6 |
MEDIUM | 5.3 | The VidoRev Extensions plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on th… | — | wordfence |
| e8b77b06-5f59-418a-8c94-498b2df252ad | MEDIUM | 5.3 | The WPDB to Sql plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includin… | — | wordfence | |
| e8a0c18b-9caf-4667-b0f2-6477a1638347 | MEDIUM | 5.3 | The WooCommerce Dropshipping Premium plugin for WordPress is vulnerable to unauthorized email sending due to a missing c… | — | wordfence | |
| e89e0697-53ab-43ae-a9bb-98e916cf06e8 | < 1.1.0 |
MEDIUM | 5.3 | The Contact Form 7 GetResponse Extension plugin for WordPress is vulnerable to Sensitive Information Exposure in all ver… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →