Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1154 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| 9fa5f9c2-47f3-4280-ac92-facbeb4816ec | < 2.0.88 |
MEDIUM | 5.3 | The Ads by WPQuads β Adsense Ads, Banner Ads, Popup Ads plugin for WordPress is vulnerable to unauthorized access due … | — | wordfence |
| 9fa3fa60-4352-4685-b131-e27bf5904fec | < 7.0.05 |
MEDIUM | 5.3 | The WP Ghost (Hide My WP Ghost) β Security & Firewall plugin for WordPress is vulnerable to IP Spoofing in all version… | — | wordfence |
| 9f9015fa-b3f0-4312-8acd-02b715e26f33 | < 6.3.8 |
MEDIUM | 5.3 | The Awesome Support β WordPress HelpDesk & Support Plugin plugin for WordPress is vulnerable to Insecure Direct Object… | — | wordfence |
| 9f8a5514-cf26-480c-a94f-754b1cc24da6 | < 1.4.38 |
MEDIUM | 5.3 | The WowOptin: Next-Gen Popup Maker β Create Stunning Popups and Optins for Lead Generation plugin for WordPress is vul… | — | wordfence |
| 9f85a44f-d2c7-4990-9dd3-9f5de78b3458 | MEDIUM | 5.3 | The Contact Form 7 Anti Spambot plugin for WordPress is vulnerable to unauthorized access due to a missing capability ch… | — | wordfence | |
| 9f740cfa-7163-4634-9705-0e01ee571a11 | < 2.6.0 |
MEDIUM | 5.3 | The Payflex Payment Gateway plugin for WordPress is vulnerable to unauthorized modification of data due to a missing cap… | — | wordfence |
| 9f6df8cf-6f64-46b9-ab83-3898484c2679 | < 2.25.0 |
MEDIUM | 5.3 | The Relevanssi β A Better Search plugin for WordPress is vulnerable to unauthorized access of data due to insufficient… | — | wordfence |
| 9f5cc779-c7de-42e6-a812-5c0539067b8c | < 8.0.5 |
MEDIUM | 5.3 | The Quiz and Survey Master plugin for WordPress is vulnerable to input validation bypass via the 'question[id]' paramete… | — | wordfence |
| 9f521875-6b4a-44a6-b810-c13b73891e20 | < 3.2.1 |
MEDIUM | 5.3 | The GDPR/CCPA Cookie Consent Banner plugin for WordPress is vulnerable to unauthorized modification of data due to a mis… | — | wordfence |
| 9f402aa7-24d6-448b-a1d3-5ee7c90b39bc | < 2.97.1 |
MEDIUM | 5.3 | The MapPress Maps for WordPress plugin for WordPress is vulnerable to Authorization Bypass Through User-Controlled Key i… | — | wordfence |
| 9f16c098-3e99-4506-b517-ae4b838a0925 | < 1.3.0 |
MEDIUM | 5.3 | The Fortis for WooCommerce plugin for WordPress is vulnerable to authorization bypass due to an inverted nonce check in … | — | wordfence |
| 9effa526-7454-4490-9bf4-0605254d6625 | < 5.4.01 |
MEDIUM | 5.3 | The WP Ghost (Hide My WP Ghost) β Security & Firewall plugin for WordPress is vulnerable to Login Page Dislcosure in a… | — | wordfence |
| 9ef8906b-be0a-45d2-b1ec-6f480306d9f0 | < 1.1.0 |
MEDIUM | 5.3 | Vulnerability in Easy2map-photos WordPress Plugin v1.0.9 MapPinImageUpload.php and MapPinIconSave.php allows path traver… | — | wordfence |
| 9edd869c-c1b2-4d56-92c1-bdf76b01a5ce | < 1.0.3 |
MEDIUM | 5.3 | The CLP Varnish Cache plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a f… | — | wordfence |
| 9ec72ac5-1851-4074-bea4-ccfd684b9c8d | MEDIUM | 5.3 | The Magic Import Document Extractor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions… | — | wordfence | |
| 9e9d876d-1dd2-4090-9ccf-ed00c3286050 | < 10.0.10 |
MEDIUM | 5.3 | The Go Maps plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 10.0.… | — | wordfence |
| 9e9c03af-4d4d-4de6-97a7-416ce22ab2aa | < 6.1.2 |
MEDIUM | 5.3 | The MainWP Child β Securely Connects to the MainWP Dashboard to Manage Multiple Sites plugin for WordPress is vulnerab… | — | wordfence |
| 9e972356-e0bc-4902-9d3c-81a534bc8e19 | < 3.1.0 |
MEDIUM | 5.3 | The Bit Form plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function i… | — | wordfence |
| 9e8e239a-0ddf-479e-b94b-7844ff6e9e81 | < 1.13.2 |
MEDIUM | 5.3 | The SureForms plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including,… | — | wordfence |
| 9e89ecbd-77f9-43bb-b057-1dfb704446af | MEDIUM | 5.3 | The plant theme for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.0.… | — | wordfence | |
| 9e693751-24eb-469c-956a-750e8f82d717 | MEDIUM | 5.3 | The Music Press Pro plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… | — | wordfence | |
| 9e29b833-6af3-4240-8ce1-6ea2a0d3bad9 | MEDIUM | 5.3 | The Dating theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in v… | — | wordfence | |
| 9e0e3b81-55fe-46b2-bae1-d7321d74c485 | < 3.3.7 |
MEDIUM | 5.3 | The Easy Digital Downloads β eCommerce Payments and Subscriptions made easy plugin for WordPress is vulnerable to Sens… | — | wordfence |
| 9e04a2f8-5071-4c85-b4f8-cb914ee509b5 | MEDIUM | 5.3 | The Easing Slider plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability c… | — | wordfence | |
| 9df7f70f-0374-46b7-a3aa-a84a6aea2f86 | < 2.2.2 |
MEDIUM | 5.3 | The Booking and Rental Manager for Bike | Car | Resort | Appointment | Dress | Equipment plugin for WordPress is vulnera… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →