πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 26, 2026
Last Updated

40,383 vulnerabilities found (page 1135 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
c342fe87-59f3-43e9-8694-cc2551650a91 MEDIUM 5.3 The Fusion Engage plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.0.5 via… wordfence
c341adcf-7072-4c07-b1f1-94e46d4cc09e
< 5.1.6.4
MEDIUM 5.3 The Survey Maker plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 5.1.6.… wordfence
c341a720-4abd-4ef0-a076-0c62a4cf503a
< 1.0.4
MEDIUM 5.3 The Advanced Linked Variations for Woocommerce plugin for WordPress is vulnerable to unauthorized access due to a missin… wordfence
c32f1c6a-cf65-419e-bfcd-48ac8e3735bc
< 1.5.1
MEDIUM 5.3 The Slider Carousel – Responsive Image Slider plugin for WordPress is vulnerable to unauthorized use of functionality … wordfence
c3172e21-c2e4-4ec0-ad0f-4433303efcfb
< 1.0.10
MEDIUM 5.3 The Syncee for Suppliers plugin for WordPress is vulnerable to Missing Authorization to Sensitive Information Disclosure… wordfence
c30df356-6cae-4f8c-a0e6-35c5c66dbe8d MEDIUM 5.3 The AnyTrack Affiliate Link Manager plugin for WordPress is vulnerable to unauthorized access due to a missing capabilit… wordfence
c30c6fc1-4693-40e9-8909-119a656bd985
< 11.4.6
MEDIUM 5.3 The RSVPMaker plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function … wordfence
c2fc3d97-0aac-47f6-b0d9-968303341033
< 1.9.9.21
MEDIUM 5.3 The Tamara Checkout plugin for WordPress is vulnerable to Payment Bypass in all versions up to, and including, 1.9.9.20.… wordfence
c2fa3845-917e-437f-b353-0af62f147196
< 6.03
MEDIUM 5.3 The Sendle Shipping plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… wordfence
c2d867eb-4227-4160-8bf2-4a7a92d68d88
< 1.8.10
MEDIUM 5.3 The WC Pickup Store plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… wordfence
c2c80b7d-aad9-4d5e-814a-6ed928827043
< 3.31.2
MEDIUM 5.3 The Leyka plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the sendCardChe… wordfence
c2be56d2-d473-455e-8d6e-d2df6abb19ca
< 1.4.13.3
MEDIUM 5.3 The Thrive Optimize WordPress plugin before 1.4.13.3, Thrive Comments WordPress plugin before 1.4.15.3, Thrive Headline … wordfence
c2b795d8-3cab-4d81-a016-b4498315ddf4
< 1.5.0
MEDIUM 5.3 The JustTables – WooCommerce Product Table plugin for WordPress is vulnerable to Cross-Site Request Forgery in version… wordfence
c2aee799-4e4c-4a41-8b76-e2ad576fe2e2
< 6.1.8
MEDIUM 5.3 The Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder plugin for WordPress is vul… wordfence
c284ed3e-7f8e-4841-88f3-33e99f98aa83
< 4.15.13
MEDIUM 5.3 The Mooberry Book Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, an… wordfence
c28479bf-768a-4ab4-8e74-ad367b9b744f
< 0.25.11
MEDIUM 5.3 The WebP Express plugin for WordPress is vulnerable to information exposure via config files in all versions up to, and … wordfence
c240826d-6b1c-424a-9bb0-eab627d7f5ed
< 1.6.7
MEDIUM 5.3 The Nokri – Job Board WordPress Theme theme for WordPress is vulnerable to unauthorized access due to a missing capabi… wordfence
c2397cdc-48ae-468c-b3e5-6229454004cb
< 6.0.0
MEDIUM 5.3 The Print Invoice & Delivery Notes for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a mi… wordfence
c20ff80c-75da-4879-ba1c-e14edf779f58 MEDIUM 5.3 The Enjoy Social Feed plugin for WordPress website plugin for WordPress is vulnerable to unauthorized modification of da… wordfence
c2057ec2-9f03-4ae9-b200-aa5a318b461e MEDIUM 5.3 The MailChimp Campaigns plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including… wordfence
c1e842de-2df2-47f1-896b-ae7a538aef1c
< 1.2.1
MEDIUM 5.3 The Experto CTA Widget – Call To Action, Sticky CTA, Floating Button Plugin plugin for WordPress is vulnerable to unau… wordfence
c1d19968-dbd8-4433-99a7-b973a59c4653
< 2.0.0
MEDIUM 5.3 The ClickDesigns plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability che… wordfence
c1993d27-5804-425b-9bcc-2359791d1ae8
< 2.4.8.1
MEDIUM 5.3 The JetBlog plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2… wordfence
c18ad885-52a8-467b-83f2-aeb0c8be8be0
< 5.2.7
MEDIUM 5.3 The LatePoint – Calendar Booking Plugin for Appointments and Events plugin for WordPress is vulnerable to unauthorized… wordfence
c182b4f2-c67b-4e82-a790-6d98946ebf2c MEDIUM 5.3 The Order Notification for Telegram plugin for WordPress is vulnerable to unauthorized test message sending due to a mis… wordfence
← Prev 1132 1133 1134 1135 1136 1137 1138 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top