πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 26, 2026
Last Updated

40,383 vulnerabilities found (page 1132 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
c84cf8f1-ff13-47e9-bf9d-a6f638af0492 MEDIUM 5.3 The BuddyForms plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… wordfence
c82e24a3-8000-4aa5-953e-11415b94909b
< 2.7.4
MEDIUM 5.3 The Tutor LMS plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check … wordfence
c8091442-f937-4f82-a5b1-c033fedcdc0d
< 2.2.0
MEDIUM 5.3 The CheckView – Form & Checkout Testing plugin for WordPress is vulnerable to unauthorized access due to a missing cap… wordfence
c7c7298d-f20c-479c-b422-81bff4c19523
< 2.3.12
MEDIUM 5.3 The LTL Freight Quotes – FreightQuote Edition plugin for WordPress is vulnerable to unauthorized access due to a missi… wordfence
c7b68860-3ecf-4608-ac10-ae557152d04e
< 1.3.1
MEDIUM 5.3 The Rara Business theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a functi… wordfence
c774b520-9d9f-4102-8564-49673d5ae1e6 MEDIUM 5.3 The Transposh WordPress Translation plugin for WordPress is vulnerable to unauthorized setting changes by unauthenticate… wordfence
c773a399-61ef-4bb0-987d-6de0bbe58ec1
< 1.1.0
MEDIUM 5.3 The RealPress – Real Estate Plugin plugin for WordPress is vulnerable to unauthorized modification of data due to a mi… wordfence
c768010d-0ff7-42b8-aca5-83c0a46a43e2
< 4.3.5
MEDIUM 5.3 The VW Fitness theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function … wordfence
c7600fe1-94e4-4e3e-a9a6-ff3589813715
< 2.05.03
MEDIUM 5.3 The Formidable Form Builder plugin for WordPress is vulnerable to Sensitive Data Exposure in versions up to, and includi… wordfence
c7479f03-3677-4192-9978-a3653d37fcb6 MEDIUM 5.3 The VW Wedding theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function … wordfence
c6edff9f-9876-4824-b057-8acbda861ffa
< 13.3.2
MEDIUM 5.3 The Product Feed PRO for WooCommerce by AdTribes – WooCommerce Product Feeds for Google, Facebook/Meta, Bing, & More p… wordfence
c6db680e-1fd4-420c-98f4-2b6dc5cf6781
< 2.12.14
MEDIUM 5.3 The EU/UK VAT Manager for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a m… wordfence
c6ca63b8-b437-4e34-a57e-c3d956fbd102
< 2.4.7
MEDIUM 5.3 The MxChat – AI Chatbot for WordPress plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all v… wordfence
c6ba7244-0ecf-412f-9b8b-6b81fa6cdeb5
< 5.9.11
MEDIUM 5.3 The Icegram Express - Email Subscribers, Newsletters and Marketing Automation Plugin for WordPress is vulnerable to Miss… wordfence
c6a3ae10-843f-484a-ad6c-221ffece7cc2
< 1.4.57
MEDIUM 5.3 The Appointment Hour Booking plugin for WordPress is vulnerable to CAPTCHA Bypass in versions up to, and including, 1.4.… wordfence
c68ec00c-20a5-461d-bf72-c3190d29c9cf
< 3.50
MEDIUM 5.3 The WPUpper Share Buttons plugin for WordPress is vulnerable to unauthorized access of data when preparing sharing links… wordfence
c68b4883-97c8-4c6f-8d04-f2318bd8183d
< 4.0.8
MEDIUM 5.3 The Taskbuilder – WordPress Project & Task Management plugin plugin for WordPress is vulnerable to unauthorized access… wordfence
c67c520d-4843-4ef1-8c96-cbf0eaab58cb MEDIUM 5.3 The Devs CRM – Manage tasks, attendance and teams all together plugin for WordPress is vulnerable to unauthorized acce… wordfence
c674ec32-7959-414a-8c31-3455bebb47bb
< 2.3.5
MEDIUM 5.3 The Simple Org Chart plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability… wordfence
c64956c3-b6f5-419e-82f3-3c9e90e1d677
< 240119
MEDIUM 5.3 The Subscribe To Comments Reloaded plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions … wordfence
c64869f0-a4dd-4135-8ed8-a6ff82a48e1f
< 1.0.1
MEDIUM 5.3 The Tainacan plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.0.0 via … wordfence
c63c0627-2402-4b93-b0fa-3764b245a585 MEDIUM 5.3 The Export Import Menus plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and incl… wordfence
c62260f8-fe32-4f30-9366-23e64ad5bd36
< 2.10.1
MEDIUM 5.3 The Points and Rewards for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in version… wordfence
c603bd67-2e14-45ed-bbff-1bcbd3c18425
< 4.2.8.4
MEDIUM 5.3 The EventPrime – Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to unauthorized access due t… wordfence
c600e8d0-7fe1-408e-a51d-8519a9acceb1
< 1.6.94
MEDIUM 5.3 The Login with phone number plugin for WordPress is vulnerable to unauthorized access of data due to a missing capabilit… wordfence
← Prev 1129 1130 1131 1132 1133 1134 1135 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top