Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1130 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| cc2c41b5-71ab-44f3-baf8-c9fef1dadf2d | < 1.7.2 |
MEDIUM | 5.3 | The Spotlight Social Feeds β Block, Shortcode, and Widget plugin for WordPress is vulnerable to Sensitive Information … | — | wordfence |
| cc1ac65f-1bea-4efd-b918-754f306abd0a | MEDIUM | 5.3 | The WP Private Content Plus plugin for WordPress is vulnerable to information exposure in all versions up to, and includ… | — | wordfence | |
| cc083470-3b43-42f3-8979-7fa6cce6ee75 | < 2.1.8 |
MEDIUM | 5.3 | The Kognetiks Chatbot for WordPress plugin for WordPress is vulnerable to unauthorized modification of data due to a mis… | — | wordfence |
| cbe3ce13-ce92-423f-b190-1b2c3dc74b82 | MEDIUM | 5.3 | The Mega Store Woocommerce theme for WordPress is vulnerable to unauthorized modification of data due to a missing capab… | — | wordfence | |
| cbdb3be2-50c5-4516-bce1-8785e338fe5c | < 5.3.0 |
MEDIUM | 5.3 | The Tidio plugin for WordPress is vulnerable to Sensitive Data Exposure in versions up to, and including, 5.2.0. This co… | — | wordfence |
| cbcec789-62b1-4858-a746-8034ff988458 | < 5.2.7 |
MEDIUM | 5.3 | The User Registration & Membership β Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom… | — | wordfence |
| cbca3d1e-0985-43d3-855e-eee07715f670 | < 2.1.16 |
MEDIUM | 5.3 | The weDocs plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.… | — | wordfence |
| cbb25a81-a92b-4773-9194-9aa355750817 | < 5.3.9 |
MEDIUM | 5.3 | The Classified Listing β AI-Powered Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to u… | — | wordfence |
| cbafdc15-cf42-4a12-bd79-5c602ce10625 | < 1.4.1 |
MEDIUM | 5.3 | The Libsyn Publisher Hub plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and inc… | — | wordfence |
| cb94caa4-35a4-4aa3-8d25-263bbd58072a | MEDIUM | 5.3 | The Reales WP - Real Estate WordPress Theme theme for WordPress is vulnerable to unauthorized modification and loss of d… | — | wordfence | |
| cb8fdb10-7b7f-4ba7-a324-5daeb872498e | < 2.0.2 |
MEDIUM | 5.3 | The Trusty Whistleblowing Solution plugin for WordPress is vulnerable to unauthorized access due to a missing capability… | — | wordfence |
| cb64128c-0342-4365-bf46-0170fc876694 | < 2.11.1 |
MEDIUM | 5.3 | The HTML5 Video Player β Embed and Play Videos in Custom Player plugin for WordPress is vulnerable to unauthorized acc… | — | wordfence |
| cb309336-5b35-45cf-9c58-4bb75d8a5cba | < 1.7.8.2 |
MEDIUM | 5.3 | The MDJM Event Management plugin for WordPress is vulnerable to unauthorized data modification due to a missing capabili… | — | wordfence |
| cb2763ae-6c40-4492-b285-0021ab4305f7 | < 2.0.4 |
MEDIUM | 5.3 | The AI Workflow Automation plugin for WordPress is vulnerable to unauthorized access due to a missing capability check o… | — | wordfence |
| cb1db880-0942-4fac-a548-8b6a28dce8c0 | < 7.1.1 |
MEDIUM | 5.3 | The Woodmart theme for WordPress is vulnerable to Arbitrary Content Injection in versions up to, and including, 7.0.4. T… | — | wordfence |
| cb141b46-2585-4b58-8d91-0cdb275348a1 | MEDIUM | 5.3 | The Perfit WooCommerce plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including,… | — | wordfence | |
| cb1105fc-ed12-4a82-9cc4-4b45aa34cdc5 | MEDIUM | 5.3 | The Thumbs Rating plugin for WordPress is vulnerable to a race condition in versions up to, and including, 5.0.0. This i… | — | wordfence | |
| caf879a7-650e-4c70-b23a-51cac00f0cc6 | < 1.3.02 |
MEDIUM | 5.3 | The 5 star review funnel for Google Reviews, Trustpilot, ProvenExpert and more | RRatingg plugin for WordPress is vulner… | — | wordfence |
| caeed320-c192-4b17-87ad-0a18366b7fe4 | < 1.3.4 |
MEDIUM | 5.3 | The Travel Monster theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a funct… | — | wordfence |
| cac5f723-f273-4c19-83ff-9110ec4f86a5 | MEDIUM | 5.3 | The Notification Master β Real-Time WordPress Notifications With Email, SMS, Webhooks & More plugin for WordPress is v… | — | wordfence | |
| caa2bbdf-353e-49a2-b0e5-d9236848a211 | MEDIUM | 5.3 | The Disable User Login plugin for WordPress is vulnerable to unauthenticated settings update due to missing authenticati… | — | wordfence | |
| ca94c815-488f-4d86-a642-39d2de803763 | < 1.9.6 |
MEDIUM | 5.3 | The WP Last Modified Info plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, … | — | wordfence |
| ca7e89fc-4d85-4512-9e27-e212d57e0e35 | < 2.7.5 |
MEDIUM | 5.3 | The AI ChatBot with ChatGPT and Content Generator by AYS plugin for WordPress is vulnerable to unauthorized access due t… | — | wordfence |
| ca6bdde6-f381-4ccb-8984-519cf9aca0b1 | < 3.54.3 |
MEDIUM | 5.3 | The WordLift β AI powered SEO β Schema plugin for WordPress is vulnerable to unauthorized access due to a missing ca… | — | wordfence |
| ca6756d0-d1d2-41b3-ad62-fc665a281e6b | MEDIUM | 5.3 | The Smarty for WordPress plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includi… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →