πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 26, 2026
Last Updated

40,383 vulnerabilities found (page 1146 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
af01964f-018d-4d19-8627-8889877db105
< 6.0.12
MEDIUM 5.3 The Kirki – Freeform Page Builder, Website Builder & Customizer plugin for WordPress is vulnerable to authorization by… wordfence
aeee2aa6-060e-4f4e-8547-44b2bd4e823e
< 2.5.10
MEDIUM 5.3 The Residential Address Detection plugin for WordPress is vulnerable to unauthorized access due to a missing capability … wordfence
aee963fa-26b5-4bf0-b52f-095c67fb4834
< 2.3
MEDIUM 5.3 The 1 Click WordPress Migration Plugin – 100% FREE for a limited time plugin for WordPress is vulnerable to Cross-Site… wordfence
aec7b59f-1c8a-4403-b33b-c119bd96ad9d MEDIUM 5.3 The Limit Login Attempts Plus plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including… wordfence
aeac9c4a-0754-4fb1-bf11-0cd8483451b6
< 4.4.3
MEDIUM 5.3 The WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels plugin for WordPress is vulnerable to un… wordfence
ae910382-cc5d-41e3-b2f4-e91367a5d086
< 3.2.4
MEDIUM 5.3 The Strong Testimonials plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a… wordfence
ae735117-e68b-448e-ad41-258d1be3aebc
< 4.10.3
MEDIUM 5.3 The LearnDash LMS plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includ… wordfence
ae68d083-b6e2-409b-8c91-d4eb7e62dba9
< 2.12.8
MEDIUM 5.3 The Paid Memberships Pro – Content Restriction, User Registration, & Paid Subscriptions plugin for WordPress is vulner… wordfence
ae66228e-d086-44fd-8acb-5a99482cedfb
< 1.6.11.7
MEDIUM 5.3 The Appointment Booking Calendar β€” Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable to d… wordfence
ae603d27-aea5-49d9-beab-db18746ffe87
< 2.2.8
MEDIUM 5.3 Multiple plugins and/or themes for WordPress are vulnerable to unauthorized access of data due to a missing capability c… wordfence
ae5779cc-b55b-4b8f-ae66-8607a689ef72
< 3.2.19
MEDIUM 5.3 The Photo Gallery, Images, Slider in Rbs Image Gallery plugin for WordPress is vulnerable to Sensitive Information Expos… wordfence
ae363511-8a1f-476a-9851-61f7763428c2
< 4.3.2.1
MEDIUM 5.3 The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to unauthorized modification of data due to a… wordfence
ae302109-11fe-47f3-a972-54af39b0e1f7
< 11.78
MEDIUM 5.3 The WPMobile.App plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a functi… wordfence
ae25e3ad-0a9e-4688-8c2a-8f949a846211
< 12.4.17
MEDIUM 5.3 The GEO Plugin by Squirrly SEO plugin for WordPress is vulnerable to unauthorized access due to a missing capability che… wordfence
ae14423e-7f39-44e4-bbf6-0d975e3f8345
< 3.1.9
MEDIUM 5.3 The Dashi plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in a… wordfence
ae1161f4-89a0-45c7-ab7f-7255673e63cd
< 4.0.2
MEDIUM 5.3 The Login & Register Forms plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and i… wordfence
ae0dd6b0-9028-456e-9843-d45754c01c53
< 4.9.3
MEDIUM 5.3 The Social Feed Gallery plugin for WordPress is vulnerable to Information Exposure in versions less than, or equal to, 4… wordfence
ae007dc0-9ac7-459d-bfe6-bcde87028b14
< 6.5.1
MEDIUM 5.3 The Conversios.io plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability ch… wordfence
adebcf1c-bb22-4a25-b79b-b76eb3b3023f
< 4.1.24
MEDIUM 5.3 The Gutenberg Template Library & Redux Framework plugin for WordPress is vulnerable to Cross-Site Request Forgery in ver… wordfence
addae413-1fc5-427f-a5ef-3da705cbeb5b
< 2.21.0
MEDIUM 5.3 The GiveWP plugin for WordPress is vulnerable to Sensitive Information Disclosure in versions up to, and including, 2.20… wordfence
add568d4-d615-40ff-9320-89869f825f81
< 2.00
MEDIUM 5.3 The Advanced Woo Search plugin version through 1.99 for Wordpress suffers from a sensitive information disclosure vulner… wordfence
adb4d326-7089-4292-bf0a-4a21e6928a2d
< 9.1.0
MEDIUM 5.3 The WooCommerce Subscription plugin for WordPress is vulnerable to PHP Object Injection in all versions up to 9.1.0 (exc… wordfence
adadac1e-3d92-41a5-90d4-b2028c8c40c0
< 3.1.2
MEDIUM 5.3 The Essential Grid Gallery WordPress Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all … wordfence
ad8fc5c1-78f1-4ab4-8fe4-707f4c46a388 MEDIUM 5.3 The Insert Post Ads plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… wordfence
ad7047f8-2005-4767-a6c9-c06c2d9cff39 MEDIUM 5.3 The Banner System plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a funct… wordfence
← Prev 1143 1144 1145 1146 1147 1148 1149 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top