Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1139 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| bc36c9e4-5f6d-4cb8-85b3-f02e00b6d3cb | < 1.1.7 |
MEDIUM | 5.3 | The TrueBooker plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… | — | wordfence |
| bc22ffe3-bd2a-4af8-84e7-5a53b68de141 | < 1.59 |
MEDIUM | 5.3 | The WordPress Exit Strategy plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and includ… | — | wordfence |
| bbe99411-ba74-4e97-8d14-659897942906 | < 1.2.1 |
MEDIUM | 5.3 | The Devs Accounting β Simple Accounting and Invoicing Solution plugin for WordPress is vulnerable to unauthorized modi… | — | wordfence |
| bbe51f96-82b2-4091-acd8-a8131a47eb07 | < 2.6.0 |
MEDIUM | 5.3 | The Content Control β The Ultimate Content Restriction Plugin! Restrict Content, Create Conditional Blocks & More plug… | — | wordfence |
| bbcb648a-4a3e-4645-bd62-4415b1cf6516 | < 2.5 |
MEDIUM | 5.3 | The Relevanssi Live Ajax Search plugin for WordPress is vulnerable to argument injection in all versions up to, and incl… | — | wordfence |
| bbba83c2-4dc3-4850-8bbf-f9c700247b49 | < 15.4 |
MEDIUM | 5.3 | SQL injection vulnerability in forum.php in the WP Symposium plugin before 15.4 for WordPress allows remote attackers to… | — | wordfence |
| bbb50bc9-5ad7-402e-a624-90f3302e1b0c | < 1.2.8 |
MEDIUM | 5.3 | The Simple Restrict plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and incl… | — | wordfence |
| bbafaa1b-bd90-42b5-b262-27ca4797b468 | < 3.0.9 |
MEDIUM | 5.3 | The Savoy theme for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.0.… | — | wordfence |
| bbade634-cd81-41c0-8976-f5cb251da3f2 | < 22.8 |
MEDIUM | 5.3 | The Frontend File Manager Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up… | — | wordfence |
| bba22270-de9b-4651-8180-c077ef113112 | MEDIUM | 5.3 | The F70 Lead Document Download plugin for WordPress is vulnerable to unauthorized access of data due to a missing capabi… | — | wordfence | |
| bb7deb6b-d601-47c8-a27c-bf0348b8a807 | < 2.46.1 |
MEDIUM | 5.3 | The YITH Request a Quote for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capa… | — | wordfence |
| bb6c977f-6ab3-4c94-83b1-968dafca4a8e | < 1.8.1.8 |
MEDIUM | 5.3 | The Charitable plugin for WordPress is vulnerable to unauthorized access due to insufficient verification on the process… | — | wordfence |
| bb697a3f-2ce5-4897-bee4-3e81fd97fa5e | MEDIUM | 5.3 | The Content Control β The Ultimate Content Restriction Plugin! Restrict Content, Create Conditional Blocks & More plug… | — | wordfence | |
| bb51676b-4b5b-4cac-934b-b8b12af9dc81 | < 4.1.4 |
MEDIUM | 5.3 | The The Ultimate Video Player For WordPress β by Presto Player plugin for WordPress is vulnerable to unauthorized acce… | — | wordfence |
| bb4b3778-7211-4a56-a2e5-1f455f356dd5 | < 4.1133 |
MEDIUM | 5.3 | The RepairBuddy β Repair Shop CRM & Booking Plugin for WordPress is vulnerable to unauthorized access in all versions … | — | wordfence |
| bb3b8d0b-4e58-408c-9527-dc17f62d3167 | < 3.4.8 |
MEDIUM | 5.3 | The Post Grid Master plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check… | — | wordfence |
| bb39990d-6d9d-413d-9c1d-582902ecdc5a | MEDIUM | 5.3 | The Accept PayPal Payments using Contact Form 7 plugin for WordPress is vulnerable to unauthorized access due to a missi… | — | wordfence | |
| bb35a0cf-e606-4ef9-8973-8a9b233696d4 | MEDIUM | 5.3 | The Hesabfa Accounting plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and i… | — | wordfence | |
| bb2a8a6f-fe97-4588-a084-64f502a40c51 | < 5.2 |
MEDIUM | 5.3 | The Translate WordPress and go Multilingual β Weglot plugin for WordPress is vulnerable to unauthorized loss of data d… | — | wordfence |
| bb20452b-7049-4567-8288-6d24350e2143 | < 3.6.9 |
MEDIUM | 5.3 | The Content Writer plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and inclu… | — | wordfence |
| bb1f7b09-9159-429b-be5b-8f1244d85a7b | < 0.1.43 |
MEDIUM | 5.3 | The Contact Form 7 AWeber Extension plugin for WordPress is vulnerable to unauthorized access due to a missing capabilit… | — | wordfence |
| bae2bcb6-9d63-4d0b-a1b6-541d2888d110 | < 4.0.3 |
MEDIUM | 5.3 | The Ally plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in ve… | — | wordfence |
| bad5c03c-5f07-4fdc-b762-4dd6e3345d59 | < 1.0.4 |
MEDIUM | 5.3 | The Togo β Travel & Tour Booking WordPress Theme theme for WordPress is vulnerable to unauthorized access due to a mis… | — | wordfence |
| bac9b912-668b-4f0d-a9a4-6c0ae2e6818e | < 3.5.9 |
MEDIUM | 5.3 | The Payment Gateway Per Product for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missi… | — | wordfence |
| bac8245c-292a-4b16-950f-fa3d06e41a09 | < 4.2 |
MEDIUM | 5.3 | The Support Plus Responsive Ticket System plugin before 4.2 for WordPress has full path disclosure. | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →