πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 27, 2026
Last Updated

40,383 vulnerabilities found (page 1156 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
9c08b8ac-83e7-4117-a5a7-021fdd4a25d8
< 2.4.3
MEDIUM 5.3 The SOOZ – AI for SEO – Bulk Generate Focus Keyphrases, Metadata, Alt Text (SEO Autopilot) plugin for WordPress is v… wordfence
9c025807-d4b7-405d-8e49-e2e6b3beba00
< 2.4.0
MEDIUM 5.3 The The GDPR Framework plugin for WordPress is vulnerable to unauthorized access in versions up to, and including, 2.3.0… wordfence
9bdc292b-73bb-4d27-8771-147ffc3c5a67 MEDIUM 5.3 The Reservation Plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a … wordfence
9bc2a04c-7b7c-483f-b81b-97a7caac179c MEDIUM 5.3 The WP Captcha plugin for WordPress is vulnerable to CAPTCHA Bypass in versions up to, and including, 2.0.0. This makes … wordfence
9babb946-4033-4e66-8f59-b73185ffcd49
< 1.49.3
MEDIUM 5.3 The Pixel Manager for WooCommerce – Track Conversions and Analytics, Google Ads, TikTok and more plugin for WordPress … wordfence
9b7a7780-0f61-4541-bcde-dbf64fd23320
< 2.7.3
MEDIUM 5.3 The myCred – Loyalty Points and Rewards plugin for WordPress and WooCommerce – Give Points, Ranks, Badges, Cashback,… wordfence
9b780e28-3254-49d8-9b62-ade1c0a42d8a
< 2.9.0
MEDIUM 5.3 The Rating Widget plugin for WordPress is vulnerable to Sensitive Data Exposure in versions up to, and including, 2.8 vi… wordfence
9b61d656-427a-4a7b-9c8f-ecf7e9546c23
< 2.4.2
MEDIUM 5.3 The Constant Contact + WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capability… wordfence
9b5c5e2b-aa1b-4360-95c7-cb6473013c8d
< 5.0.10
MEDIUM 5.3 The Church Admin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includi… wordfence
9b4a1529-ddc5-42f2-9e50-7f45851fca4b
< 2.7.17
MEDIUM 5.3 The RSVP and Event Management plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to… wordfence
9b39b4ce-3885-4ea4-8cf0-84e66e7f6a12
< 6.5.0
MEDIUM 5.3 The Fancy Product Designer plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and includi… wordfence
9b34929a-7244-4e14-8637-cbfc29ce6083
< 1.5.4
MEDIUM 5.3 The Arvow AI SEO Writer plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a… wordfence
9b19240c-d143-4360-9696-47358983178f
< 4.0.0
MEDIUM 5.3 The KiviCare – Clinic & Patient Management System (EHR) plugin for WordPress is vulnerable to unauthorized access due … wordfence
9b0b11bb-5da0-4582-b57c-991f11959e9a
< 2.7.5
MEDIUM 5.3 The Five Star Restaurant Reservations – WordPress Booking Plugin plugin for WordPress is vulnerable to Insecure Direct… wordfence
9b004132-b2a6-422d-882e-5122708d9709
< 2.0.0
MEDIUM 5.3 The Cartpauj Register Captcha plugin for WordPress is vulnerable to CAPTCHA Bypass in versions up to, and including, 1.0… wordfence
9aff585b-b2ee-46ff-8558-ded4ece9a3eb MEDIUM 5.3 The Trash Duplicate and 301 Redirect plugin for WordPress is vulnerable to unauthorized access due to a missing capabili… wordfence
9ac2559a-c622-417c-a655-e92e8ac96770
< 3.5.5.9
MEDIUM 5.3 The Passster plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 3.5.… wordfence
9a81cc87-cd77-4b86-a8aa-12aa03ab18d6 MEDIUM 5.3 The bbPress API plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a functio… wordfence
9a77672b-340e-4f10-abe7-461c2db537b8
< 3.10.3
MEDIUM 5.3 The SmartCrawl WordPress SEO checker, SEO analyzer, SEO optimizer plugin for WordPress is vulnerable to unauthorized ld+… wordfence
9a63a4ec-80e6-48cc-a778-97fa3917817e
< 10.24
MEDIUM 5.3 The Salon Booking System, Appointment Scheduling for Salons, Spas & Small Businesses plugin for WordPress is vulnerable … wordfence
9a5474de-f805-4d4d-abe7-45f1571d4581
< 2.0.1
MEDIUM 5.3 The Lendiz - Loan & Funding Agency WordPress Theme theme for WordPress is vulnerable to arbitrary file uploads due to mi… wordfence
9a4a2b01-450d-46fb-9de5-0de40b590201 MEDIUM 5.3 The Zynith SEO plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… wordfence
99ca1d6b-820d-412e-82c8-ac9647765086
< 3.5.2
MEDIUM 5.3 The Filter & Grids plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a func… wordfence
999e3483-a882-4beb-8c16-6426487a7851
< 5.9.0
MEDIUM 5.3 The Print Invoice & Delivery Notes for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a mi… wordfence
99938cd0-7251-491e-ac79-61210ae57963
< 1.9.2
MEDIUM 5.3 The Advanced Related Posts plugin for WordPress is vulnerable to unauthorized access due to a missing capability check o… wordfence
← Prev 1153 1154 1155 1156 1157 1158 1159 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top