πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 26, 2026
Last Updated

40,383 vulnerabilities found (page 1142 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
b6d51dc3-b695-4e9d-b25a-d1b302be1fec
< 2.1.8
MEDIUM 5.3 The Masteriyo LMS – Online Course Builder for eLearning, LMS & Education plugin for WordPress is vulnerable to Authori… wordfence
b6d054e4-0ef7-401d-9d81-24cc0f875432
< 1.6.1
MEDIUM 5.3 An authentication bypass vulnerability in the CRUDLab WP Like Button plugin through 1.6.0 for WordPress allows unauthent… wordfence
b6cc2898-5dea-4f3d-892a-580ec374c630 MEDIUM 5.3 The Live Shopping & Shoppable Videos For WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a … wordfence
b6bb9df2-cf6e-4357-b75c-afdab55f90d4
< 4.14
MEDIUM 5.3 The Newsletters plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a functio… wordfence
b6b349f2-24c9-4921-bb5f-a7726ebc5c2a
< 5.1.6
MEDIUM 5.3 The User Registration & Membership plugin for WordPress is vulnerable to Missing Authorization in all versions up to, an… wordfence
b6a54470-fc66-43c5-a523-ddbefd47ee1f
< 1.0.1
MEDIUM 5.3 The Team Circle Image Slider With Lightbox plugin for WordPress is vulnerable to Cross-Site Request Forgery in version 1… wordfence
b6926c2c-79d4-477c-a2eb-ba62545f2e2b
< 1.3.2
MEDIUM 5.3 The Wizit Gateway for WooCommerce plugin for WordPress is vulnerable to Unauthenticated Arbitrary Order Cancellation in … wordfence
b69122e2-1af6-4425-9c25-48d7682417f3
< 1.3.6
MEDIUM 5.3 The Social Snap plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability chec… wordfence
b65902ab-71c6-482d-95d0-fa6af8e05f82
< 2.52.1
MEDIUM 5.3 The YITH WooCommerce Zoom Magnifier plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up … wordfence
b64635f4-abc0-4e69-89e4-357840c5e776
< 2.2
MEDIUM 5.3 The Code Quality Control Tool plugin for WordPress is vulnerable to Sensitive Information Exposure in version 2.1 throug… wordfence
b637ebfd-c273-428b-985c-6f5b6a03f263
< 1.3.42
MEDIUM 5.3 The Contact Form Email plugin for WordPress is vulnerable to CAPTCHA Bypass in versions up to, and including, 1.3.41. Th… wordfence
b613d4ab-6e96-428b-b853-bda5950a6027
< 2.4.5
MEDIUM 5.3 The WP Job Portal – AI-Powered Recruitment System for Company or Job Board website plugin for WordPress is vulnerable … wordfence
b5fd4a47-0549-4d03-b81a-ad97d3d5d390
< 3.4.10
MEDIUM 5.3 The Unify plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on t… wordfence
b5ea849a-2017-4354-96e7-18fd309046f2
< 1.24.0
MEDIUM 5.3 The Mapster WP Maps plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to 1.24.0. This … wordfence
b5dfe2a5-612f-4e6c-a639-4afcff2ffa4c
< 9.1.0
MEDIUM 5.3 The WooCommerce plugin for WordPress is vulnerable to HTML Injection in all versions up to, and including, 9.0.2. This i… wordfence
b5d08207-9480-42ef-b7b4-b7d01a839c85
< 3.2.5
MEDIUM 5.3 The Points Management System For Gamification, Ranks, Badges, and Loyalty Rewards Program – myCred plugin for WordPres… wordfence
b5c8ffc7-3b32-410f-94df-75279d668220
< 3.6.2
MEDIUM 5.3 The Sunshine Photo Cart – Client Photo Gallery & Photo Proofing for Photographers plugin for WordPress is vulnerable t… wordfence
b5b6b0fe-ccaf-4ec3-97d2-4aa972ad6833
< 2.7.2
MEDIUM 5.3 The Booking and Rental Manager for Bike | Car | Resort | Appointment | Dress | Equipment plugin for WordPress is vulnera… wordfence
b5aa0222-1e70-4c06-860f-77643da4356c MEDIUM 5.3 The Intelligence plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 1.4.0.… wordfence
b58d905b-302e-47c3-8abb-354e7ff28a8f
< 2.5.6
MEDIUM 5.3 The JobSearch WP Job Board plugin for WordPress is vulnerable to unauthorized access due to a missing capability check o… wordfence
b5715acd-62e6-4cd8-8fe8-4b1412f287c9
< 2.8.17
MEDIUM 5.3 The Ad Inserter – Ad Manager & AdSense Ads plugin for WordPress is vulnerable to authorization bypass in all versions … wordfence
b56cef33-057b-4c40-945f-68306597b00b
< 2.0
MEDIUM 5.3 The Ace Post Type Builder plugin for WordPress is vulnerable to unauthorized custom taxonomy deletion due to missing aut… wordfence
b5137bc2-912b-4e25-966e-515e8d9fc21c
< 1.2.54
MEDIUM 5.3 The OOPSpam Anti-Spam: Spam Protection for WordPress Forms & Comments (No CAPTCHA) plugin for WordPress is vulnerable to… wordfence
b50db670-856a-43d1-811e-4dc297137dc0
< 1.0.48
MEDIUM 5.3 The Appointment Booking Calendar – WP Timetics Booking Plugin plugin for WordPress is vulnerable to unauthorized acces… wordfence
b4fc93e3-09fe-427c-a21c-d952a05902d1
< 2.3.3
MEDIUM 5.3 The Hotel Booking plugin for WordPress is vulnerable to Price Manipulation in versions up to, and including, 2.3.2. This… wordfence
← Prev 1139 1140 1141 1142 1143 1144 1145 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top