πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 27, 2026
Last Updated

40,383 vulnerabilities found (page 1166 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
89f57714-7643-4839-9932-7a2918dc7127
< 5.30.11
MEDIUM 5.3 The YARPP – Yet Another Related Posts Plugin plugin for WordPress is vulnerable to unauthorized access due to a missin… wordfence
89ee5d27-9123-4fd2-94f8-4395db5663ec
< 8.1.17
MEDIUM 5.3 The Quiz And Survey Master plugin for WordPress is vulnerable to unauthorized access, modification or loss of data due t… wordfence
89c199e0-c8ec-4867-b9b5-412a5603c46c
< 2.8.0
MEDIUM 5.3 The Easy Form plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function … wordfence
89bd0f8f-45c7-4b54-bc89-e1ba4f867eb9 MEDIUM 5.3 The Appointment Hour Booking – Booking Calendar plugin for WordPress is vulnerable to unauthorized access in all versi… wordfence
89838360-1693-4283-86d5-0334b91ab879
< 2.4.5
MEDIUM 5.3 The Vimeography: Vimeo Video Gallery WordPress Plugin plugin for WordPress is vulnerable to Sensitive Information Exposu… wordfence
896a038f-fe54-4120-842e-093ef236a898
< 2.1.8
MEDIUM 5.3 The Social Sharing Plugin – Kiwi plugin for WordPress is vulnerable to Information Exposure in all versions up to, and… wordfence
89489218-263f-4157-a5cd-a12bc6a0dfe6
< 1.12.8
MEDIUM 5.3 The Elementor Addon Elements plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and… wordfence
89458095-2efe-4162-961a-7dc80852d312
< 1.2.1
MEDIUM 5.3 The Booster Extension plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and in… wordfence
8905dcc7-d3c8-4ae8-818c-df3e6ed2ad9c
< 1.5.0
MEDIUM 5.3 The WP Directory Kit plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and inc… wordfence
88d80702-a987-4b12-a003-2fa564fda409
< 6.3.0
MEDIUM 5.3 The Download Manager Pro plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and inc… wordfence
88c5752c-ef4e-4343-810e-ecf1f33d3538
< 2.2.18
MEDIUM 5.3 The User Access Manager plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 2.2.… wordfence
88b2d8e6-d242-4943-a121-23898a8fde55
< 2.0.5.6
MEDIUM 5.3 The Master Addons for Elementor plugin for WordPress is vulnerable to unauthorized modification of data due to a missing… wordfence
88a649de-ea56-4bd9-b82f-9b3a35a6e4b0
< 1.9.6
MEDIUM 5.3 The Cloak Front End Email plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on… wordfence
889593b5-0fc4-4513-9db1-9a7dbabb5408
< 2.10.0
MEDIUM 5.3 The Colissimo shipping methods for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in… wordfence
88840d66-1644-4af0-b811-41f0e9fe2c0c MEDIUM 5.3 The Product Category Tree plugin for WordPress is vulnerable to unauthorized use of functionality due to a missing capab… wordfence
8872eca8-4812-4f5f-b775-cbfab90ba2ca
< 1.1.52
MEDIUM 5.3 The WooCommerce Box Office plugin for WordPress is vulnerable to unauthorized access, modification, or loss of data due … wordfence
88409bb0-5cb0-4f63-b8f0-d72f54fa17b0 MEDIUM 5.3 The Booking calendar, Appointment Booking System plugin for WordPress is vulnerable to authorization bypass in all versi… wordfence
88163d55-ab97-4697-a25b-d54615e2a843
< 9.0.1
MEDIUM 5.3 The Solid Security – Password, Two Factor Authentication, and Brute Force Protection plugin for WordPress is vulnerabl… wordfence
88103a90-aa51-4510-8cb2-6915e0dfdf3f MEDIUM 5.3 The Quick Restaurant Reservations plugin for WordPress is vulnerable to unauthorized access due to a missing capability … wordfence
87e98702-6616-4e11-aeaf-733cd9d700fe
< 1.5.0.1
MEDIUM 5.3 The JetBlocks for Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and … wordfence
87c99299-d23b-4cab-b2dc-abeed89155ff
< 1.4.0
MEDIUM 5.3 The Easy!Appointments plugin for WordPress is vulnerable to Sensitive Data Exposure in versions up to, and including, 1.… wordfence
87ae0d66-3974-48ed-8a84-722e52df6b64
< 2.5.2
MEDIUM 5.3 The Contact Form 7 – PayPal & Stripe Add-on plugin for WordPress is vulnerable to unauthorized access due to a missing… wordfence
87a1cc00-330c-40c3-a174-8ea50075c4bd
< 6.1.4
MEDIUM 5.3 The WP Maintenance plugin for WordPress is vulnerable to IP Address Restriction Bypass in versions up to, and including,… wordfence
87a1bf86-7e05-4124-b774-9e27902be688 MEDIUM 5.3 The Blockons plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function i… wordfence
8765b075-a2db-4423-a449-d7aa0c15db74
< 3.6.27
MEDIUM 5.3 The DirectoryPress – Business Directory And Classified Ad Listing plugin for WordPress is vulnerable to Sensitive Info… wordfence
← Prev 1163 1164 1165 1166 1167 1168 1169 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top