Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1142 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| b6d51dc3-b695-4e9d-b25a-d1b302be1fec | < 2.1.8 |
MEDIUM | 5.3 | The Masteriyo LMS β Online Course Builder for eLearning, LMS & Education plugin for WordPress is vulnerable to Authori… | — | wordfence |
| b6d054e4-0ef7-401d-9d81-24cc0f875432 | < 1.6.1 |
MEDIUM | 5.3 | An authentication bypass vulnerability in the CRUDLab WP Like Button plugin through 1.6.0 for WordPress allows unauthent… | — | wordfence |
| b6cc2898-5dea-4f3d-892a-580ec374c630 | MEDIUM | 5.3 | The Live Shopping & Shoppable Videos For WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a … | — | wordfence | |
| b6bb9df2-cf6e-4357-b75c-afdab55f90d4 | < 4.14 |
MEDIUM | 5.3 | The Newsletters plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a functio… | — | wordfence |
| b6b349f2-24c9-4921-bb5f-a7726ebc5c2a | < 5.1.6 |
MEDIUM | 5.3 | The User Registration & Membership plugin for WordPress is vulnerable to Missing Authorization in all versions up to, an… | — | wordfence |
| b6a54470-fc66-43c5-a523-ddbefd47ee1f | < 1.0.1 |
MEDIUM | 5.3 | The Team Circle Image Slider With Lightbox plugin for WordPress is vulnerable to Cross-Site Request Forgery in version 1… | — | wordfence |
| b6926c2c-79d4-477c-a2eb-ba62545f2e2b | < 1.3.2 |
MEDIUM | 5.3 | The Wizit Gateway for WooCommerce plugin for WordPress is vulnerable to Unauthenticated Arbitrary Order Cancellation in … | — | wordfence |
| b69122e2-1af6-4425-9c25-48d7682417f3 | < 1.3.6 |
MEDIUM | 5.3 | The Social Snap plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability chec… | — | wordfence |
| b65902ab-71c6-482d-95d0-fa6af8e05f82 | < 2.52.1 |
MEDIUM | 5.3 | The YITH WooCommerce Zoom Magnifier plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up … | — | wordfence |
| b64635f4-abc0-4e69-89e4-357840c5e776 | < 2.2 |
MEDIUM | 5.3 | The Code Quality Control Tool plugin for WordPress is vulnerable to Sensitive Information Exposure in version 2.1 throug… | — | wordfence |
| b637ebfd-c273-428b-985c-6f5b6a03f263 | < 1.3.42 |
MEDIUM | 5.3 | The Contact Form Email plugin for WordPress is vulnerable to CAPTCHA Bypass in versions up to, and including, 1.3.41. Th… | — | wordfence |
| b613d4ab-6e96-428b-b853-bda5950a6027 | < 2.4.5 |
MEDIUM | 5.3 | The WP Job Portal β AI-Powered Recruitment System for Company or Job Board website plugin for WordPress is vulnerable … | — | wordfence |
| b5fd4a47-0549-4d03-b81a-ad97d3d5d390 | < 3.4.10 |
MEDIUM | 5.3 | The Unify plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on t… | — | wordfence |
| b5ea849a-2017-4354-96e7-18fd309046f2 | < 1.24.0 |
MEDIUM | 5.3 | The Mapster WP Maps plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to 1.24.0. This … | — | wordfence |
| b5dfe2a5-612f-4e6c-a639-4afcff2ffa4c | < 9.1.0 |
MEDIUM | 5.3 | The WooCommerce plugin for WordPress is vulnerable to HTML Injection in all versions up to, and including, 9.0.2. This i… | — | wordfence |
| b5d08207-9480-42ef-b7b4-b7d01a839c85 | < 3.2.5 |
MEDIUM | 5.3 | The Points Management System For Gamification, Ranks, Badges, and Loyalty Rewards Program β myCred plugin for WordPres… | — | wordfence |
| b5c8ffc7-3b32-410f-94df-75279d668220 | < 3.6.2 |
MEDIUM | 5.3 | The Sunshine Photo Cart β Client Photo Gallery & Photo Proofing for Photographers plugin for WordPress is vulnerable t… | — | wordfence |
| b5b6b0fe-ccaf-4ec3-97d2-4aa972ad6833 | < 2.7.2 |
MEDIUM | 5.3 | The Booking and Rental Manager for Bike | Car | Resort | Appointment | Dress | Equipment plugin for WordPress is vulnera… | — | wordfence |
| b5aa0222-1e70-4c06-860f-77643da4356c | MEDIUM | 5.3 | The Intelligence plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 1.4.0.… | — | wordfence | |
| b58d905b-302e-47c3-8abb-354e7ff28a8f | < 2.5.6 |
MEDIUM | 5.3 | The JobSearch WP Job Board plugin for WordPress is vulnerable to unauthorized access due to a missing capability check o… | — | wordfence |
| b5715acd-62e6-4cd8-8fe8-4b1412f287c9 | < 2.8.17 |
MEDIUM | 5.3 | The Ad Inserter β Ad Manager & AdSense Ads plugin for WordPress is vulnerable to authorization bypass in all versions … | — | wordfence |
| b56cef33-057b-4c40-945f-68306597b00b | < 2.0 |
MEDIUM | 5.3 | The Ace Post Type Builder plugin for WordPress is vulnerable to unauthorized custom taxonomy deletion due to missing aut… | — | wordfence |
| b5137bc2-912b-4e25-966e-515e8d9fc21c | < 1.2.54 |
MEDIUM | 5.3 | The OOPSpam Anti-Spam: Spam Protection for WordPress Forms & Comments (No CAPTCHA) plugin for WordPress is vulnerable to… | — | wordfence |
| b50db670-856a-43d1-811e-4dc297137dc0 | < 1.0.48 |
MEDIUM | 5.3 | The Appointment Booking Calendar β WP Timetics Booking Plugin plugin for WordPress is vulnerable to unauthorized acces… | — | wordfence |
| b4fc93e3-09fe-427c-a21c-d952a05902d1 | < 2.3.3 |
MEDIUM | 5.3 | The Hotel Booking plugin for WordPress is vulnerable to Price Manipulation in versions up to, and including, 2.3.2. This… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →