Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1132 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| c84cf8f1-ff13-47e9-bf9d-a6f638af0492 | MEDIUM | 5.3 | The BuddyForms plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… | — | wordfence | |
| c82e24a3-8000-4aa5-953e-11415b94909b | < 2.7.4 |
MEDIUM | 5.3 | The Tutor LMS plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check … | — | wordfence |
| c8091442-f937-4f82-a5b1-c033fedcdc0d | < 2.2.0 |
MEDIUM | 5.3 | The CheckView β Form & Checkout Testing plugin for WordPress is vulnerable to unauthorized access due to a missing cap… | — | wordfence |
| c7c7298d-f20c-479c-b422-81bff4c19523 | < 2.3.12 |
MEDIUM | 5.3 | The LTL Freight Quotes β FreightQuote Edition plugin for WordPress is vulnerable to unauthorized access due to a missi… | — | wordfence |
| c7b68860-3ecf-4608-ac10-ae557152d04e | < 1.3.1 |
MEDIUM | 5.3 | The Rara Business theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a functi… | — | wordfence |
| c774b520-9d9f-4102-8564-49673d5ae1e6 | MEDIUM | 5.3 | The Transposh WordPress Translation plugin for WordPress is vulnerable to unauthorized setting changes by unauthenticate… | — | wordfence | |
| c773a399-61ef-4bb0-987d-6de0bbe58ec1 | < 1.1.0 |
MEDIUM | 5.3 | The RealPress β Real Estate Plugin plugin for WordPress is vulnerable to unauthorized modification of data due to a mi… | — | wordfence |
| c768010d-0ff7-42b8-aca5-83c0a46a43e2 | < 4.3.5 |
MEDIUM | 5.3 | The VW Fitness theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function … | — | wordfence |
| c7600fe1-94e4-4e3e-a9a6-ff3589813715 | < 2.05.03 |
MEDIUM | 5.3 | The Formidable Form Builder plugin for WordPress is vulnerable to Sensitive Data Exposure in versions up to, and includi… | — | wordfence |
| c7479f03-3677-4192-9978-a3653d37fcb6 | MEDIUM | 5.3 | The VW Wedding theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function … | — | wordfence | |
| c6edff9f-9876-4824-b057-8acbda861ffa | < 13.3.2 |
MEDIUM | 5.3 | The Product Feed PRO for WooCommerce by AdTribes β WooCommerce Product Feeds for Google, Facebook/Meta, Bing, & More p… | — | wordfence |
| c6db680e-1fd4-420c-98f4-2b6dc5cf6781 | < 2.12.14 |
MEDIUM | 5.3 | The EU/UK VAT Manager for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a m… | — | wordfence |
| c6ca63b8-b437-4e34-a57e-c3d956fbd102 | < 2.4.7 |
MEDIUM | 5.3 | The MxChat β AI Chatbot for WordPress plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all v… | — | wordfence |
| c6ba7244-0ecf-412f-9b8b-6b81fa6cdeb5 | < 5.9.11 |
MEDIUM | 5.3 | The Icegram Express - Email Subscribers, Newsletters and Marketing Automation Plugin for WordPress is vulnerable to Miss… | — | wordfence |
| c6a3ae10-843f-484a-ad6c-221ffece7cc2 | < 1.4.57 |
MEDIUM | 5.3 | The Appointment Hour Booking plugin for WordPress is vulnerable to CAPTCHA Bypass in versions up to, and including, 1.4.… | — | wordfence |
| c68ec00c-20a5-461d-bf72-c3190d29c9cf | < 3.50 |
MEDIUM | 5.3 | The WPUpper Share Buttons plugin for WordPress is vulnerable to unauthorized access of data when preparing sharing links… | — | wordfence |
| c68b4883-97c8-4c6f-8d04-f2318bd8183d | < 4.0.8 |
MEDIUM | 5.3 | The Taskbuilder β WordPress Project & Task Management plugin plugin for WordPress is vulnerable to unauthorized access… | — | wordfence |
| c67c520d-4843-4ef1-8c96-cbf0eaab58cb | MEDIUM | 5.3 | The Devs CRM β Manage tasks, attendance and teams all together plugin for WordPress is vulnerable to unauthorized acce… | — | wordfence | |
| c674ec32-7959-414a-8c31-3455bebb47bb | < 2.3.5 |
MEDIUM | 5.3 | The Simple Org Chart plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability… | — | wordfence |
| c64956c3-b6f5-419e-82f3-3c9e90e1d677 | < 240119 |
MEDIUM | 5.3 | The Subscribe To Comments Reloaded plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions … | — | wordfence |
| c64869f0-a4dd-4135-8ed8-a6ff82a48e1f | < 1.0.1 |
MEDIUM | 5.3 | The Tainacan plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.0.0 via … | — | wordfence |
| c63c0627-2402-4b93-b0fa-3764b245a585 | MEDIUM | 5.3 | The Export Import Menus plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and incl… | — | wordfence | |
| c62260f8-fe32-4f30-9366-23e64ad5bd36 | < 2.10.1 |
MEDIUM | 5.3 | The Points and Rewards for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in version… | — | wordfence |
| c603bd67-2e14-45ed-bbff-1bcbd3c18425 | < 4.2.8.4 |
MEDIUM | 5.3 | The EventPrime β Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to unauthorized access due t… | — | wordfence |
| c600e8d0-7fe1-408e-a51d-8519a9acceb1 | < 1.6.94 |
MEDIUM | 5.3 | The Login with phone number plugin for WordPress is vulnerable to unauthorized access of data due to a missing capabilit… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →