πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 26, 2026
Last Updated

40,383 vulnerabilities found (page 1119 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
e00e67fb-65fa-4f35-9a3d-5794eb0505aa
< 1.1.9
MEDIUM 5.3 The Masterstudy - Education WordPress Theme theme for WordPress is vulnerable to Sensitive Information Exposure in all v… wordfence
e00e65ba-db58-4d13-8cb3-c4d62a2553fb
< 2.2.7
MEDIUM 5.3 The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable … wordfence
e007c713-74bc-4ff5-a198-70dcc8a8ee68
< 5.8.2
MEDIUM 5.3 The Essential Addons For Elementor plugin for WordPress is vulnerable to unauthenticated API key disclosure in versions … wordfence
e000c4ad-43ec-4ad0-89f9-74e9e6d8b917
< 28.0.3
MEDIUM 5.3 The Contest Gallery plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 28.… wordfence
dfe6b29f-421d-41f4-ab36-0fd48b1b8021 MEDIUM 5.3 The Graphina – Charts and Graphs For Elementor plugin for WordPress is vulnerable to unauthorized access due to a miss… wordfence
dfc5d4a0-e651-4ecc-b584-9beed9f6e5fb
< 6.8.9
MEDIUM 5.3 The Auto Affiliate Links plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on … wordfence
dfb7636b-2f4d-4a82-bd63-fea32668530e
< 4.1.9
MEDIUM 5.3 The Eventin – Event Calendar, Event Registration, Tickets & Booking (AI Powered) plugin for WordPress is vulnerable to… wordfence
df60951a-7170-4e7b-894c-d713a79d6fd0
< 1.0.4
MEDIUM 5.3 The Studio99 WP Monitor plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a… wordfence
df4ea9f7-b014-46b4-9684-ce3ff64d8a39
< 2.2.2
MEDIUM 5.3 The SendPulse Email Marketing Newsletter plugin for WordPress is vulnerable to Sensitive Information Exposure in all ver… wordfence
df3fe27a-4f5f-40a5-ae5a-bcf1232be0f0
< 2.1.3
MEDIUM 5.3 The Rapid Car Check Vehicle Data plugin for WordPress is vulnerable to unauthorized access due to a missing capability c… wordfence
def62ae8-ff98-4dc5-bd74-3157d28004e9 MEDIUM 5.3 The MIPL WC Multisite Sync plugin for WordPress is vulnerable to unauthorized access due to a missing capability check o… wordfence
def06edd-ea4f-4b49-9902-b179d40e4133
< 3.7
MEDIUM 5.3 The DoLogin Security plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 3.6. Th… wordfence
ded4dcdc-cda2-4485-8d90-77b849a1e436
< 2.5.6
MEDIUM 5.3 The WooODT Lite – Delivery & pickup date time location for WooCommerce plugin for WordPress is vulnerable to payment b… wordfence
dec2855c-71a8-46b2-819a-d85cd11a1a24
< 2.6.3
MEDIUM 5.3 The Cryptocurrency Widgets – Price Ticker & Coins List plugin for WordPress is vulnerable to unauthorized access due t… wordfence
deba0ee8-1930-4287-aaaf-0d89a674934c
< 2.1.50
MEDIUM 5.3 The MarketKing β€” Ultimate WooCommerce Multivendor Marketplace Solution plugin for WordPress is vulnerable to unauthori… wordfence
deaae457-2809-4f07-83e2-2e73cdcdf5ec
< 4.8.1
MEDIUM 5.3 The Noo JobMonster theme for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includ… wordfence
de982653-26b4-4a7b-a391-373362bcb834
< 2.2.9
MEDIUM 5.3 The Restrict – membership, site, content and user access restrictions for WordPress plugin for WordPress is vulnerable… wordfence
de920076-55a0-4f9a-9b4a-0e0d0edfc991
< 14.8.1
MEDIUM 5.3 The Simple Link Directory Pro plugin for WordPress is vulnerable to unauthorized access due to a missing capability chec… wordfence
de821236-f878-46a4-9265-bcf6e8661910
< 2.8.8
MEDIUM 5.3 The Activity Log plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 2.8.7. This… wordfence
de7db1d6-b352-44c7-a6cc-b21cb65a0482
< 3.2.5
MEDIUM 5.3 The SALESmanago plugin for WordPress is vulnerable to Log Injection in versions up to, and including, 3.2.4. This is due… wordfence
de73304e-7a28-4304-b1ed-2f6dd7738236
< 8.4.4
MEDIUM 5.3 The PrivateContent plugin for WordPress is vulnerable to protection mechanism bypass due to the use of client side valid… wordfence
de64e79f-0284-4d23-a18b-64554f2b188e
< 10.0.10
MEDIUM 5.3 The WP Go Maps plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including… wordfence
de5a9a2e-547e-46f0-8ab9-3d63750055e7 MEDIUM 5.3 The Interactive Regional Map of Florida plugin for WordPress is vulnerable to unauthorized access due to a missing capab… wordfence
de31d4a9-c71b-4f0b-ac14-a96ce4aeb73e MEDIUM 5.3 The ez Form Calculator Premium plugin for WordPress is vulnerable to unauthorized access due to a missing capability che… wordfence
de12f6d7-72db-494d-bbba-300d3a83b5b2 MEDIUM 5.3 The Website Internal Link Optimiser plugin for WordPress is vulnerable to unauthorized access due to a missing capabilit… wordfence
← Prev 1116 1117 1118 1119 1120 1121 1122 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top