πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 26, 2026
Last Updated

40,383 vulnerabilities found (page 1118 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
e1f701e5-194a-4245-855e-c3b8204d4959 MEDIUM 5.3 The KKProgressbar2 Free – advanced progress bars plugin for WordPress is vulnerable to Cross-Site Request Forgery in a… wordfence
e1ebd1f8-cd33-4531-8e23-5c1029931fb4
< 1.60
MEDIUM 5.3 The Schema & Structured Data for WP & AMP plugin for WordPress is vulnerable to arbitrary file uploads due to missing ac… wordfence
e1db5e59-3b78-4a1e-931d-b255859bc2cd MEDIUM 5.3 The Integrate PhonePe with WooCommerce plugin for WordPress is vulnerable to Payment Bypass in all versions up to, and i… wordfence
e19377a8-fa42-43ab-b60e-c216c21697db
< 3.15.0.3
MEDIUM 5.3 The FunnelKit – Funnel Builder for WooCommerce Checkout plugin for WordPress is vulnerable to unauthorized access due … wordfence
e180758a-d1c8-4b68-937b-89878619da8f
< 1.7.0
MEDIUM 5.3 The WP Fundraising Donation and Crowdfunding Platform plugin for WordPress is vulnerable to unauthorized modification of… wordfence
e166d52d-73d1-4572-b9cc-ab935b05e13c MEDIUM 5.3 The Zip Attachments plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check … wordfence
e165b9ea-b7e1-43c8-8105-121e51c35a9a
< 3.0.22
MEDIUM 5.3 The LeadConnector plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a funct… wordfence
e154c472-7984-4926-9e52-96e0be3b5a25 MEDIUM 5.3 The PeproDev WooCommerce Receipt Uploader plugin for WordPress is vulnerable to Insecure Direct Object Reference in vers… wordfence
e10ba37a-cd7d-4fc9-8b41-806fa3dc7785 MEDIUM 5.3 The Developer Toolbar plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and in… wordfence
e0e503f4-5864-49f0-aa52-6a44af5e8087
< 1.9.1
MEDIUM 5.3 The WPS Hide Login WordPress plugin before 1.9.1 has a bug which allows to get the secret login page by setting a random… wordfence
e0c92241-0bef-4f87-8478-4d805435f09d
< 2.4.0
MEDIUM 5.3 The PayHere Payment Gateway Plugin for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of da… wordfence
e0bfff4e-c4ec-4d99-b16d-3630068c4b2e MEDIUM 5.3 The DethemeKit for Elementor plugin for WordPress is vulnerable to unauthorized access due to a missing capability check… wordfence
e0bcd2f0-5944-48c0-9d08-3177fbe4b47f
< 2.7.2
MEDIUM 5.3 The Image Slider by Ays plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a… wordfence
e0a37ce4-9860-415e-bb88-545c30c95fc1
< 2.3.2
MEDIUM 5.3 The Clearfy Cache – WordPress optimization plugin, Minify HTML, CSS & JS, Defer plugin for WordPress is vulnerable to … wordfence
e0a278a3-f229-4673-8b3e-5b68f383dcc7
< 4.2.9
MEDIUM 5.3 The User Frontend: AI Powered Frontend Posting, User Directory, Profile, Membership & User Registration plugin for WordP… wordfence
e09f3a54-9f2c-4a64-ba59-c79e2855d0d0 MEDIUM 5.3 The The Moneytizer plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a func… wordfence
e08fc1d8-870a-4f2b-96bd-ffeeb9803d89 MEDIUM 5.3 The eMember plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in… wordfence
e06fe8e4-e27a-4492-b175-3b0846e4cf10
< 6.0.0
MEDIUM 5.3 The Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder plugin for WordPress is vul… wordfence
e04171d6-b905-4633-80ca-427b35d5ead6
< 4.5.5
MEDIUM 5.3 The Nexter Blocks – WordPress Gutenberg Blocks & 1000+ Starter Templates plugin for WordPress is vulnerable to unautho… wordfence
e036fd56-c13f-486d-acae-66378426d380
< 4.1.1
MEDIUM 5.3 The WP-Invoice – Web Invoice and Billing plugin for WordPress is vulnerable to authorization bypass due to a missing c… wordfence
e0318b0b-9686-4889-8676-1dd536f4f24e MEDIUM 5.3 The Quick Paypal Payments plugin for WordPress is vulnerable to Payment Bypass in all versions up to, and including, 5.7… wordfence
e022febe-7295-493d-afa7-185f55b4d3b9
< 1.2.3.4
MEDIUM 5.3 The Ibtana – WordPress Website Builder plugin for WordPress is vulnerable to unauthorized modification of data due to … wordfence
e0211fcd-3638-4c9d-b607-0c788188d98b MEDIUM 5.3 The Cream Magazine theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a funct… wordfence
e0204832-4d1e-42af-8a1f-7610bed98111
< 2.8.0
MEDIUM 5.3 The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions … wordfence
e01b4259-ed8d-44a4-9771-470de45b14a8
< 4.1.7
MEDIUM 5.3 The CMP – Coming Soon & Maintenance plugin for WordPress is vulnerable to Information Exposure in versions up to, and … wordfence
← Prev 1115 1116 1117 1118 1119 1120 1121 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top