Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1118 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| e1f701e5-194a-4245-855e-c3b8204d4959 | MEDIUM | 5.3 | The KKProgressbar2 Free β advanced progress bars plugin for WordPress is vulnerable to Cross-Site Request Forgery in a… | — | wordfence | |
| e1ebd1f8-cd33-4531-8e23-5c1029931fb4 | < 1.60 |
MEDIUM | 5.3 | The Schema & Structured Data for WP & AMP plugin for WordPress is vulnerable to arbitrary file uploads due to missing ac… | — | wordfence |
| e1db5e59-3b78-4a1e-931d-b255859bc2cd | MEDIUM | 5.3 | The Integrate PhonePe with WooCommerce plugin for WordPress is vulnerable to Payment Bypass in all versions up to, and i… | — | wordfence | |
| e19377a8-fa42-43ab-b60e-c216c21697db | < 3.15.0.3 |
MEDIUM | 5.3 | The FunnelKit β Funnel Builder for WooCommerce Checkout plugin for WordPress is vulnerable to unauthorized access due … | — | wordfence |
| e180758a-d1c8-4b68-937b-89878619da8f | < 1.7.0 |
MEDIUM | 5.3 | The WP Fundraising Donation and Crowdfunding Platform plugin for WordPress is vulnerable to unauthorized modification of… | — | wordfence |
| e166d52d-73d1-4572-b9cc-ab935b05e13c | MEDIUM | 5.3 | The Zip Attachments plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check … | — | wordfence | |
| e165b9ea-b7e1-43c8-8105-121e51c35a9a | < 3.0.22 |
MEDIUM | 5.3 | The LeadConnector plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a funct… | — | wordfence |
| e154c472-7984-4926-9e52-96e0be3b5a25 | MEDIUM | 5.3 | The PeproDev WooCommerce Receipt Uploader plugin for WordPress is vulnerable to Insecure Direct Object Reference in vers… | — | wordfence | |
| e10ba37a-cd7d-4fc9-8b41-806fa3dc7785 | MEDIUM | 5.3 | The Developer Toolbar plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and in… | — | wordfence | |
| e0e503f4-5864-49f0-aa52-6a44af5e8087 | < 1.9.1 |
MEDIUM | 5.3 | The WPS Hide Login WordPress plugin before 1.9.1 has a bug which allows to get the secret login page by setting a random… | — | wordfence |
| e0c92241-0bef-4f87-8478-4d805435f09d | < 2.4.0 |
MEDIUM | 5.3 | The PayHere Payment Gateway Plugin for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of da… | — | wordfence |
| e0bfff4e-c4ec-4d99-b16d-3630068c4b2e | MEDIUM | 5.3 | The DethemeKit for Elementor plugin for WordPress is vulnerable to unauthorized access due to a missing capability check… | — | wordfence | |
| e0bcd2f0-5944-48c0-9d08-3177fbe4b47f | < 2.7.2 |
MEDIUM | 5.3 | The Image Slider by Ays plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a… | — | wordfence |
| e0a37ce4-9860-415e-bb88-545c30c95fc1 | < 2.3.2 |
MEDIUM | 5.3 | The Clearfy Cache β WordPress optimization plugin, Minify HTML, CSS & JS, Defer plugin for WordPress is vulnerable to … | — | wordfence |
| e0a278a3-f229-4673-8b3e-5b68f383dcc7 | < 4.2.9 |
MEDIUM | 5.3 | The User Frontend: AI Powered Frontend Posting, User Directory, Profile, Membership & User Registration plugin for WordP… | — | wordfence |
| e09f3a54-9f2c-4a64-ba59-c79e2855d0d0 | MEDIUM | 5.3 | The The Moneytizer plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a func… | — | wordfence | |
| e08fc1d8-870a-4f2b-96bd-ffeeb9803d89 | MEDIUM | 5.3 | The eMember plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in… | — | wordfence | |
| e06fe8e4-e27a-4492-b175-3b0846e4cf10 | < 6.0.0 |
MEDIUM | 5.3 | The Fluent Forms β Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder plugin for WordPress is vul… | — | wordfence |
| e04171d6-b905-4633-80ca-427b35d5ead6 | < 4.5.5 |
MEDIUM | 5.3 | The Nexter Blocks β WordPress Gutenberg Blocks & 1000+ Starter Templates plugin for WordPress is vulnerable to unautho… | — | wordfence |
| e036fd56-c13f-486d-acae-66378426d380 | < 4.1.1 |
MEDIUM | 5.3 | The WP-Invoice β Web Invoice and Billing plugin for WordPress is vulnerable to authorization bypass due to a missing c… | — | wordfence |
| e0318b0b-9686-4889-8676-1dd536f4f24e | MEDIUM | 5.3 | The Quick Paypal Payments plugin for WordPress is vulnerable to Payment Bypass in all versions up to, and including, 5.7… | — | wordfence | |
| e022febe-7295-493d-afa7-185f55b4d3b9 | < 1.2.3.4 |
MEDIUM | 5.3 | The Ibtana β WordPress Website Builder plugin for WordPress is vulnerable to unauthorized modification of data due to … | — | wordfence |
| e0211fcd-3638-4c9d-b607-0c788188d98b | MEDIUM | 5.3 | The Cream Magazine theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a funct… | — | wordfence | |
| e0204832-4d1e-42af-8a1f-7610bed98111 | < 2.8.0 |
MEDIUM | 5.3 | The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions … | — | wordfence |
| e01b4259-ed8d-44a4-9771-470de45b14a8 | < 4.1.7 |
MEDIUM | 5.3 | The CMP β Coming Soon & Maintenance plugin for WordPress is vulnerable to Information Exposure in versions up to, and … | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →