Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1146 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| af01964f-018d-4d19-8627-8889877db105 | < 6.0.12 |
MEDIUM | 5.3 | The Kirki β Freeform Page Builder, Website Builder & Customizer plugin for WordPress is vulnerable to authorization by… | — | wordfence |
| aeee2aa6-060e-4f4e-8547-44b2bd4e823e | < 2.5.10 |
MEDIUM | 5.3 | The Residential Address Detection plugin for WordPress is vulnerable to unauthorized access due to a missing capability … | — | wordfence |
| aee963fa-26b5-4bf0-b52f-095c67fb4834 | < 2.3 |
MEDIUM | 5.3 | The 1 Click WordPress Migration Plugin β 100% FREE for a limited time plugin for WordPress is vulnerable to Cross-Site… | — | wordfence |
| aec7b59f-1c8a-4403-b33b-c119bd96ad9d | MEDIUM | 5.3 | The Limit Login Attempts Plus plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including… | — | wordfence | |
| aeac9c4a-0754-4fb1-bf11-0cd8483451b6 | < 4.4.3 |
MEDIUM | 5.3 | The WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels plugin for WordPress is vulnerable to un… | — | wordfence |
| ae910382-cc5d-41e3-b2f4-e91367a5d086 | < 3.2.4 |
MEDIUM | 5.3 | The Strong Testimonials plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a… | — | wordfence |
| ae735117-e68b-448e-ad41-258d1be3aebc | < 4.10.3 |
MEDIUM | 5.3 | The LearnDash LMS plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includ… | — | wordfence |
| ae68d083-b6e2-409b-8c91-d4eb7e62dba9 | < 2.12.8 |
MEDIUM | 5.3 | The Paid Memberships Pro β Content Restriction, User Registration, & Paid Subscriptions plugin for WordPress is vulner… | — | wordfence |
| ae66228e-d086-44fd-8acb-5a99482cedfb | < 1.6.11.7 |
MEDIUM | 5.3 | The Appointment Booking Calendar β Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable to d… | — | wordfence |
| ae603d27-aea5-49d9-beab-db18746ffe87 | < 2.2.8 |
MEDIUM | 5.3 | Multiple plugins and/or themes for WordPress are vulnerable to unauthorized access of data due to a missing capability c… | — | wordfence |
| ae5779cc-b55b-4b8f-ae66-8607a689ef72 | < 3.2.19 |
MEDIUM | 5.3 | The Photo Gallery, Images, Slider in Rbs Image Gallery plugin for WordPress is vulnerable to Sensitive Information Expos… | — | wordfence |
| ae363511-8a1f-476a-9851-61f7763428c2 | < 4.3.2.1 |
MEDIUM | 5.3 | The LearnPress β WordPress LMS Plugin plugin for WordPress is vulnerable to unauthorized modification of data due to a… | — | wordfence |
| ae302109-11fe-47f3-a972-54af39b0e1f7 | < 11.78 |
MEDIUM | 5.3 | The WPMobile.App plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a functi… | — | wordfence |
| ae25e3ad-0a9e-4688-8c2a-8f949a846211 | < 12.4.17 |
MEDIUM | 5.3 | The GEO Plugin by Squirrly SEO plugin for WordPress is vulnerable to unauthorized access due to a missing capability che… | — | wordfence |
| ae14423e-7f39-44e4-bbf6-0d975e3f8345 | < 3.1.9 |
MEDIUM | 5.3 | The Dashi plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in a… | — | wordfence |
| ae1161f4-89a0-45c7-ab7f-7255673e63cd | < 4.0.2 |
MEDIUM | 5.3 | The Login & Register Forms plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and i… | — | wordfence |
| ae0dd6b0-9028-456e-9843-d45754c01c53 | < 4.9.3 |
MEDIUM | 5.3 | The Social Feed Gallery plugin for WordPress is vulnerable to Information Exposure in versions less than, or equal to, 4… | — | wordfence |
| ae007dc0-9ac7-459d-bfe6-bcde87028b14 | < 6.5.1 |
MEDIUM | 5.3 | The Conversios.io plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability ch… | — | wordfence |
| adebcf1c-bb22-4a25-b79b-b76eb3b3023f | < 4.1.24 |
MEDIUM | 5.3 | The Gutenberg Template Library & Redux Framework plugin for WordPress is vulnerable to Cross-Site Request Forgery in ver… | — | wordfence |
| addae413-1fc5-427f-a5ef-3da705cbeb5b | < 2.21.0 |
MEDIUM | 5.3 | The GiveWP plugin for WordPress is vulnerable to Sensitive Information Disclosure in versions up to, and including, 2.20… | — | wordfence |
| add568d4-d615-40ff-9320-89869f825f81 | < 2.00 |
MEDIUM | 5.3 | The Advanced Woo Search plugin version through 1.99 for Wordpress suffers from a sensitive information disclosure vulner… | — | wordfence |
| adb4d326-7089-4292-bf0a-4a21e6928a2d | < 9.1.0 |
MEDIUM | 5.3 | The WooCommerce Subscription plugin for WordPress is vulnerable to PHP Object Injection in all versions up to 9.1.0 (exc… | — | wordfence |
| adadac1e-3d92-41a5-90d4-b2028c8c40c0 | < 3.1.2 |
MEDIUM | 5.3 | The Essential Grid Gallery WordPress Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all … | — | wordfence |
| ad8fc5c1-78f1-4ab4-8fe4-707f4c46a388 | MEDIUM | 5.3 | The Insert Post Ads plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… | — | wordfence | |
| ad7047f8-2005-4767-a6c9-c06c2d9cff39 | MEDIUM | 5.3 | The Banner System plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a funct… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →