πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 26, 2026
Last Updated

40,383 vulnerabilities found (page 1115 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
e701b771-59f2-4783-b0a1-bea4d6c3d245
< 4.0.5
MEDIUM 5.3 The Classified Listing – Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to Sensitive In… wordfence
e6fbc2a8-6bb7-45d5-8d60-08d28ea85ec8
< 2.5.9
MEDIUM 5.3 The LTL Freight Quotes – Unishippers Edition plugin for WordPress is vulnerable to unauthorized access due to a missin… wordfence
e6faf2b7-52e2-4656-9171-4ee17352ed1e MEDIUM 5.3 The Pinpoint Booking System – Version 2 plugin for WordPress is vulnerable to Price Manipulation via the `cart_data` p… wordfence
e6e572a0-6a82-40ae-9267-68618911b0e5 MEDIUM 5.3 The WM Options Import Export plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to,… wordfence
e6e48963-e773-46e1-ae45-03fe5e20f09e
< 8.9.3
MEDIUM 5.3 WP Cerber before 8.9.3 allows bypass of /wp-json access control via a trailing ? character. wordfence
e6a2580f-4a40-4aed-acbf-afecbd16bbf7 MEDIUM 5.3 The WTI Like Post plugin for WordPress is vulnerable to IP Address Spoofing in all versions up to, and including, 1.4.6 … wordfence
e67f680a-8942-45fa-8458-a27c78045aa1
< 3.5.2
MEDIUM 5.3 The Product Table for WooCommerce by CodeAstrology (wooproducttable.com) plugin for WordPress is vulnerable to Sensitive… wordfence
e679b853-3207-47c9-9cbe-d3ce3826cd00
< 3.4.5
MEDIUM 5.3 The Rate My Post – Star Rating Plugin by FeedbackWP plugin for WordPress is vulnerable to Insecure Direct Object Refer… wordfence
e64f3e2b-7c82-4b30-bb3e-b84916e29232
< 3.6.0
MEDIUM 5.3 The Age Gate plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the store() … wordfence
e63fded9-6101-4658-8b5e-8993f27e4c4a
< 1.1.6
MEDIUM 5.3 The Chocolate House theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a func… wordfence
e62e77b2-0fc9-4a6b-a0e2-8858dbf9d8a1
< 1.3.7
MEDIUM 5.3 The MDTF plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in ve… wordfence
e625130f-8e21-4baf-9d3c-4cbb806b9e52
< 2.25.2
MEDIUM 5.3 The Relevanssi – A Better Search plugin for WordPress is vulnerable to unauthorized modification of data due to a miss… wordfence
e60cd9eb-5707-493d-8f3a-3d4160e14735
< 4.6.20
MEDIUM 5.3 The Paymattic – Secure, Simple Payment & Donation with Subscription Payments, Recurring Donations, Customer Management… wordfence
e5f3feb7-547e-4c01-8453-a1fc207ee009
< 6.15.10
MEDIUM 5.3 The Events Calendar plugin for WordPress is vulnerable to information disclosure in versions up to, and including, 6.15.… wordfence
e5ea906a-a0f2-4381-bca2-160fbc75e39c MEDIUM 5.3 Multiple plugins andthemes for WordPress by inkthemes are vulnerable to Sensitive Information Exposure in various versio… wordfence
e5d625d6-57e0-4dc7-b3ee-cb0639a02230 MEDIUM 5.3 The WhatsOrder – Instant Checkout for WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure… wordfence
e5c99252-ca42-4c93-8f24-c39326f26983
< 1.7.5
MEDIUM 5.3 The Golo - City Travel Guide WordPress Theme theme for WordPress is vulnerable to unauthorized access due to a missing c… wordfence
e5ab6dcd-ef22-4fea-9e35-9358ede3ff5d MEDIUM 5.3 The Backup Bank: WordPress Backup Plugin plugin for WordPress is vulnerable to unauthorized execution of an AJAX action … wordfence
e59928f6-7527-4810-8aab-2a71d348dd9e
< 1.3.1
MEDIUM 5.3 The E-cab Taxi Booking Manager for Woocommerce plugin for WordPress is vulnerable to unauthorized access due to a missin… wordfence
e54e199a-410f-402d-bdd0-14685e2ca3fc
< 4.2.7.6
MEDIUM 5.3 The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capab… wordfence
e545b53e-7054-41dc-b69b-7552ef6c3240
< 7.22
MEDIUM 5.3 The Modern Events Calendar Lite plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and in… wordfence
e53e75be-d4d6-4c10-b192-fe9691f27dd8
< 2.0.5
MEDIUM 5.3 The WordPress File Sharing Plugin plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions… wordfence
e53ca576-9705-4362-b2b7-338477002ab9
< 8.3.0
MEDIUM 5.3 The Nelio A/B Testing – AB Tests and Heatmaps for Better Conversion Optimization plugin for WordPress is vulnerable to… wordfence
e537c56d-7c5e-4f21-b266-ef3d1a87caf2
< 1.6.7
MEDIUM 5.3 The Simple calendar for Elementor plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and… wordfence
e533f20e-825b-443c-93b2-cf451284ae96
< 3.0.7
MEDIUM 5.3 The HT Mega Addons for Elementor – Elementor Widgets & Template Builder plugin for WordPress is vulnerable to Sensitiv… wordfence
← Prev 1112 1113 1114 1115 1116 1117 1118 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top