Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1131 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| ca35aa09-c805-49c8-81fb-c0003ea2c197 | MEDIUM | 5.3 | The Review Manager plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a func… | — | wordfence | |
| ca24aa2f-5d31-4128-af75-68bd24637ee7 | < 2.1.26 |
MEDIUM | 5.3 | The CURCY plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'wo… | — | wordfence |
| ca1f0dc6-c0bc-4e9f-b3b6-d6274aa7a7db | < 4.13.0 |
MEDIUM | 5.3 | The YITH WooCommerce Gift Cards plugin for WordPress is vulnerable to unauthorized modification of data due to a missing… | — | wordfence |
| ca14ec54-0864-47f7-9653-1fe04e2875de | < 12.6.1 |
MEDIUM | 5.3 | The PixelYourSite β Your smart PIXEL (TAG) & API Manager plugin for WordPress is vulnerable to Sensitive Information E… | — | wordfence |
| ca12f906-d896-428a-a144-a1afe045197b | < 0.2.18 |
MEDIUM | 5.3 | The AnyComment WordPress plugin before 0.2.18 is affected by a race condition when liking/disliking a comment/reply, whi… | — | wordfence |
| ca0bc327-1a64-493b-8813-8bb7b71635f0 | < 3.2.12 |
MEDIUM | 5.3 | The Easy Digital Downloads β Sell Digital Files & Subscriptions (eCommerce Store + Payments Made Easy) plugin for Word… | — | wordfence |
| c9e1410f-10c9-4654-8b61-cfcdde696da7 | < 4.2.6.6 |
MEDIUM | 5.3 | The LearnPress β WordPress LMS Plugin plugin for WordPress is vulnerable to bypass to user registration in versions up… | — | wordfence |
| c9e09c6a-7d71-4c82-bc7a-ac310f52b5cd | < 2.6.2 |
MEDIUM | 5.3 | The Breakdance plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… | — | wordfence |
| c9d38777-67b0-41ed-9184-cd45c61101c5 | MEDIUM | 5.3 | The Listihub theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in… | — | wordfence | |
| c9aa467f-9ac2-4a84-b0bb-761101733af7 | < 4.2.5 |
MEDIUM | 5.3 | The Rate My Post β Star Rating Plugin by FeedbackWP plugin for WordPress is vulnerable to Insecure Direct Object Refer… | — | wordfence |
| c9aa2a44-5a71-4a10-9876-3d54b8d268c5 | < 1.2.1 |
MEDIUM | 5.3 | The Booking for Appointments and Events Calendar β Amelia plugin for WordPress is vulnerable to Full Path Disclosure i… | — | wordfence |
| c9a1f1a1-4f0a-48b5-80c8-525b69006863 | < 2.0.3 |
MEDIUM | 5.3 | The Advanced Contact form 7 DB plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up t… | — | wordfence |
| c968ee80-fb33-484b-aac1-eb265f4229be | < 9.0.54 |
MEDIUM | 5.3 | The Payment Gateway for PayPal on WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing… | — | wordfence |
| c9686681-4e64-43f1-ba0a-56d10c8d1db9 | < 1.1.7 |
MEDIUM | 5.3 | The Product Filtering by Categories, Tags, Price Range for WooCommerce β Filter Plus plugin for WordPress is vulnerabl… | — | wordfence |
| c959d881-b00d-465c-bafa-988ffcf86995 | < 4.1.11 |
MEDIUM | 5.3 | The Plus Addons for Elementor Page Builder WordPress plugin before 4.1.11 did not properly check that a user requesting … | — | wordfence |
| c94c2b2a-03c8-4ffe-83f9-2142385a0363 | < 3.1.67 |
MEDIUM | 5.3 | The Ditty β Responsive News Tickers, Sliders, and Lists plugin for WordPress is vulnerable to unauthorized access due … | — | wordfence |
| c9160eb6-959e-4181-96ec-8e26beb0b239 | < 1.22.26 |
MEDIUM | 5.3 | The Backup and Staging by WP Time Capsule plugin for WordPress is vulnerable to unauthorized access due to a missing cap… | — | wordfence |
| c900e013-2f33-47df-9ee3-eb177db72511 | MEDIUM | 5.3 | The Video List Manager plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a … | — | wordfence | |
| c8f0456d-078e-4962-98a3-d1451b01b75f | < 3.12.22 |
MEDIUM | 5.3 | The Easy Appointments plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a f… | — | wordfence |
| c8c69fc2-e1bf-43e7-a80e-931dbb70d8da | < 1.7 |
MEDIUM | 5.3 | The Login No Captcha reCAPTCHA plugin for WordPress is vulnerable to CAPTCHA bypass in versions up to, and including, 1.… | — | wordfence |
| c8970d08-6c75-4dbb-ad24-6d9ba4c07530 | < 2.3.0 |
MEDIUM | 5.3 | The WooCommerce Warranty Requests plugin for WordPress is vulnerable to unauthorized access due to a missing capability … | — | wordfence |
| c88dcf62-4b6c-4ff0-8530-5aefd54bd347 | < 1.0.17 |
MEDIUM | 5.3 | The Booking Calendar for Appointments and Service Businesses β Booktics plugin for WordPress is vulnerable to unauthor… | — | wordfence |
| c87e8245-236f-4ab8-837b-c5eeec92bb0c | MEDIUM | 5.3 | The Maintenance & Coming Soon Redirect Animation plugin for WordPress is vulnerable to IP Address Spoofing in all versio… | — | wordfence | |
| c873c04e-516e-41ee-a295-b8c5235abc1b | < 1.42.1 |
MEDIUM | 5.3 | The Forminator Forms β Contact Form, Payment Form & Custom Form Builder plugin for WordPress is vulnerable to Order Re… | — | wordfence |
| c86e5cfd-f450-48d6-819e-5345fc0fdfc8 | < 5.0.6 |
MEDIUM | 5.3 | The Ninja Tables plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the defa… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →