Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1122 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| da2050ea-70b3-476d-841f-021c3baddf35 | < 3.2.0 |
MEDIUM | 5.3 | The Flamix: Bitrix24 and Contact Form 7 integrations plugin for WordPress is vulnerable to Full Path Disclosure in all v… | — | wordfence |
| da01eaa6-fb18-4594-824c-d5db8ad97b69 | MEDIUM | 5.3 | The WP-NERD Toolkit plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and incl… | — | wordfence | |
| d9df6792-d208-44c9-b04b-00e86d76cbfa | < 4.47.0 |
MEDIUM | 5.3 | The FG PrestaShop to WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up… | — | wordfence |
| d9db50bb-4091-444b-bf72-8b619dd7f4e0 | MEDIUM | 5.3 | The MyD Delivery plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and inclu… | — | wordfence | |
| d9cefc8e-9c1c-4b5e-adf8-665b8d4dc774 | < 1.2 |
MEDIUM | 5.3 | The TinyMCE Color Picker plugin before 1.2 for WordPress does not properly check permissions, which allows remote attack… | — | wordfence |
| d9c381a0-ce75-40bd-9c2f-eac892ca58d5 | < 3.5.0 |
MEDIUM | 5.3 | The Everest Forms plugin for WordPress is vulnerable to unauthorized access in versions up to, and including, 3.4.0. Thi… | — | wordfence |
| d9bfba3e-ae66-44b2-9907-bfd994ca9502 | < 5.20.1 |
MEDIUM | 5.3 | The Trinity Audio β Text to Speech AI audio player to convert content into audio plugin for WordPress is vulnerable to… | — | wordfence |
| d9b8e6dc-a9ac-4afb-ad47-4f51032bb1f4 | < 3.4.2 |
MEDIUM | 5.3 | The Hummingbird plugin for WordPress is vulnerable to Path Traversal in versions up to, and including, 3.4.1 via the pag… | — | wordfence |
| d9ac0d84-dff4-4a03-a530-cac47ffaf2bb | < 1.9.6 |
MEDIUM | 5.3 | The PPWP β Password Protect Pages plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions… | — | wordfence |
| d99f81ea-1e74-4b67-a6c5-3dbc7865a68a | < 1.9.118 |
MEDIUM | 5.3 | The WS Form LITE plugin for WordPress is vulnerable to CAPTCHA bypass in versions up to, and including, 1.9.117. This is… | — | wordfence |
| d99dc270-1b28-4e76-9346-38b2b96be01c | < 1.0.23 |
MEDIUM | 5.3 | The Simple Page Access Restriction plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions … | — | wordfence |
| d980c4bf-8630-4e85-a932-2d00b195afb0 | MEDIUM | 5.3 | The Plugin BlueX for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capability c… | — | wordfence | |
| d97feb4e-2696-44f8-a426-0f82c0a9cf3b | < 1.12.57 |
MEDIUM | 5.3 | The SurveyJS: Drag & Drop WordPress Form Builder to create, style and embed multiple forms of any complexity plugin for … | — | wordfence |
| d970e2fa-ba2f-4c0f-8ff4-10041b9c276e | < 2.1.0 |
MEDIUM | 5.3 | The AI ChatBot with ChatGPT and Content Generator by AYS plugin for WordPress is vulnerable to unauthorized access due t… | — | wordfence |
| d95295ed-4878-414d-be6b-bfb3e9076cca | < 1.2.12 |
MEDIUM | 5.3 | The UsersWP β Front-end login form, User Registration, User Profile & Members Directory plugin for WP plugin for WordP… | — | wordfence |
| d94f0347-2167-4840-b21c-3279de0f9325 | < 1.5.3 |
MEDIUM | 5.3 | The wps-hide-login plugin before 1.5.3 for WordPress has a protection bypass via wp-login.php in the Referer field. T… | — | wordfence |
| d92c80cb-080b-4774-8c66-1d5cf68e771f | < 1.1.20 |
MEDIUM | 5.3 | The Wise Analytics plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 1.1… | — | wordfence |
| d8df95b2-d1aa-4724-9150-5bf88ee2a765 | < 1.3.0 |
MEDIUM | 5.3 | The The Minimal theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… | — | wordfence |
| d8cacd78-df1d-4c63-b051-3e02c45671cd | MEDIUM | 5.3 | The UnitechPay plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… | — | wordfence | |
| d8c14927-d7b4-4766-8fe8-3616c0779e6b | < 3.0.0 |
MEDIUM | 5.3 | The Knowband Mobile App Builder plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capabil… | — | wordfence |
| d8a45482-ab07-4088-b078-73a6ba6c802f | < 3.5.7.1 |
MEDIUM | 5.3 | The Sunshine Photo Cart: Free Client Photo Galleries for Photographers plugin for WordPress is vulnerable to unauthorize… | — | wordfence |
| d897daf8-5320-4546-9a63-1d34a15b2a58 | < 4.9.1 |
MEDIUM | 5.3 | The ChatBot plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 4.8.9… | — | wordfence |
| d8880266-d30c-4974-8d08-731f86e212ec | < 3.6.4.2 |
MEDIUM | 5.3 | The JetFormBuilder β Dynamic Blocks Form Builder plugin for WordPress is vulnerable to unauthorized access due to a mi… | — | wordfence |
| d8801b9a-afcb-483b-a018-4f68448e96de | < 2.3 |
MEDIUM | 5.3 | The Accept Authorize.NET Payments Using Contact Form 7 plugin for WordPress is vulnerable to Information Exposure in all… | — | wordfence |
| d87c4534-3f71-4e7e-bf17-222e77fee24f | < 6.0.7.2 |
MEDIUM | 5.3 | The RegistrationMagic β Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is … | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →