πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 26, 2026
Last Updated

40,383 vulnerabilities found (page 1114 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
e884af8b-c83f-4380-bfaf-f1419fce125c
< 3.5.0
MEDIUM 5.3 The WPIDE – File Manager & Code Editor plugin for WordPress is vulnerable to Full Path Disclosure in all versions up t… wordfence
e860aa70-b8ef-4b2a-a035-b01efce30a79
< 1.52
MEDIUM 5.3 The Forminator Forms plugin for WordPress is vulnerable to Missing Authorization in versions up to and including 1.51.1.… wordfence
e84d3e22-8568-4bdb-be9b-ffe78c69ec24
< 1.7.2
MEDIUM 5.3 The WordPress Tour & Travel Booking Plugin for WooCommerce – WpTravelly plugin for WordPress is vulnerable to unauthor… wordfence
e846e864-4560-4209-8865-51f4747c36c7
< 1.50
MEDIUM 5.3 The Stop and Block bots plugin Anti bots plugin for WordPress is vulnerable to unauthorized access due to a missing capa… wordfence
e83f9945-b49f-4718-9ff2-673a7f66c381
< 2.6.3
MEDIUM 5.3 The ApplyOnline – Application Form Builder and Manager plugin for WordPress is vulnerable to Sensitive Information Exp… wordfence
e83a6820-f44d-456b-9f0f-be44a2704296
< 3.2.31
MEDIUM 5.3 The Booking calendar, Appointment Booking System plugin for WordPress is vulnerable to unauthorized access due to a miss… wordfence
e821dc5b-7ff6-426f-9c38-8dea960bae0d
< 1.1.4
MEDIUM 5.3 The Sync Master Sheet – Product Sync with Google Sheet for WooCommerce plugin for WordPress is vulnerable to unauthori… wordfence
e809cd39-7bb0-475f-a2ae-c7bc4bdba63c
< 2.5.5
MEDIUM 5.3 The WidgetKit plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check … wordfence
e807480b-00c9-4340-bd05-b695b56e27ec
< 7.8.2
MEDIUM 5.3 The Checkout Field Manager (Checkout Manager) for WooCommerce plugin for WordPress is vulnerable to unauthenticated limi… wordfence
e7ebf975-0fa7-43cd-a4fe-99284ad3aaf6
< 23.0212
MEDIUM 5.3 The ReDi Restaurant Reservation plugin for WordPress is vulnerable to unauthorized access and modification of data due t… wordfence
e7e33fbc-da1b-4109-8b29-37e1050a559b
< 2.3.2
MEDIUM 5.3 The Spectra – WordPress Gutenberg Blocks plugin for WordPress is vulnerable to CAPTCHA Bypass in versions up to, and i… wordfence
e7d4830b-f60a-4556-b40f-1bf9d5a296ad
< 1.3.5
MEDIUM 5.3 The Stop User Enumeration plugin for WordPress is vulnerable to Username Enumeration Bypasses in versions up to, and inc… wordfence
e7d0805f-aa53-44e6-8829-0916c03d5632
< 2.0.1
MEDIUM 5.3 The Subscriptions for WooCommerce plugin for WordPress is vulnerable to Payment Verification Bypass in versions up to, a… wordfence
e7b719b9-7287-4d2a-b107-7c9bc18b9456
< 5.0.5
MEDIUM 5.3 The Event Booking Manager for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing cap… wordfence
e7b3be2a-1ef7-4270-a055-6be92503149d
< 1.0.17
MEDIUM 5.3 The Booktics plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function i… wordfence
e7ab6f3a-352c-4104-802d-af2ed9b1154b
< 1.1.2
MEDIUM 5.3 The Ksher plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in a… wordfence
e7a88214-45ca-468e-b228-4fe89b327aef MEDIUM 5.3 The APPExperts – Mobile App Builder for WordPress | WooCommerce to iOS and Android Apps plugin for WordPress is vulner… wordfence
e7a731ff-12e9-4fab-a055-c0193b3b2da8
< 1.2.07
MEDIUM 5.3 The WP Time Slots Booking Form plugin for WordPress is vulnerable to price manipulation due to insufficient server-side … wordfence
e78b5ed9-4e46-4bc9-9e4e-0f70bc81d1cb
< 4.6.0
MEDIUM 5.3 The SSL Zen – Free Let's Encrypt SSL Certificate & HTTPS/SSL Redirect WordPress Plugin plugin for WordPress is vu… wordfence
e76c921f-a950-401f-ac37-c28efc0f3064
< 4.7.9
MEDIUM 5.3 The Simple Membership plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a f… wordfence
e74fb552-3ef4-47cd-8fe6-8cc1e74b8377
< 1.2.7
MEDIUM 5.3 The ilGhera Support System for WooCommerce plugin for WordPress is vulnerable to unauthorized modification and loss of d… wordfence
e733070c-8cf1-4ec2-8a46-f335d757f37a
< 8.4.0
MEDIUM 5.3 The TaxCloud for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capability check… wordfence
e71e92c2-a3f0-414f-8fc2-5a7f3b23cf05
< 6.50.55
MEDIUM 5.3 The WP Compress plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a functio… wordfence
e71e3624-ccda-4c9c-90e9-e557dd19b644
< 4.3.7
MEDIUM 5.3 The Popup Box – Best WordPress Popup Plugin plugin for WordPress is vulnerable to unauthorized access of data due to a… wordfence
e70ada17-f129-4675-93b4-a41a7ea93833
< 6.0.12
MEDIUM 5.3 The Kirki – Freeform Page Builder, Website Builder & Customizer plugin for WordPress is vulnerable to HTML Injection i… wordfence
← Prev 1111 1112 1113 1114 1115 1116 1117 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top