Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1167 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| 874c1ba5-1bbd-43ac-bc5c-901638fa56ef | < 1.2.11 |
MEDIUM | 5.3 | The Database Collation Fix plugin for WordPress is vulnerable to time-based SQL Injection via the 'force-collation-algor… | — | wordfence |
| 874b3448-df4c-49c4-bf4f-435cf48f6305 | < 5.0.1 |
MEDIUM | 5.3 | The Guest posting / Frontend Posting / Front Editor β WP Front User Submit plugin for WordPress is vulnerable to unaut… | — | wordfence |
| 873d82ef-cc73-4294-a972-9cd5392d3b54 | < 5.14 |
MEDIUM | 5.3 | The NM Gift Registry and Wishlist Lite plugin for WordPress is vulnerable to unauthorized access due to a missing capabi… | — | wordfence |
| 872f216c-b8ed-409d-a7eb-f5187ea2b8dd | < 1.2.3 |
MEDIUM | 5.3 | The Pranayama Yoga theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a funct… | — | wordfence |
| 86edc116-054f-4962-a57c-0ce7e1b8ff8c | < 1.0.2 |
MEDIUM | 5.3 | The StickEasy Protected Contact Form plugin for WordPress is vulnerable to Sensitive Information Disclosure in all versi… | — | wordfence |
| 86ebb3d1-5fd1-48cb-95b7-f82014323f01 | < 5.2.5.1 |
MEDIUM | 5.3 | The RegistrationMagic β Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is … | — | wordfence |
| 86d01f1b-f1f3-4d28-8fd9-6f17d610a38c | < 4.1.3 |
MEDIUM | 5.3 | The Advanced WooCommerce Product Sales Reporting β Statistics & Forecast plugin for WordPress is vulnerable to Sensiti… | — | wordfence |
| 86c9bcf1-c69e-47ca-b74b-8ce6157f520b | < 1.3.71 |
MEDIUM | 5.3 | The Royal Elementor Addons plugin for WordPress is vulnerable to unauthenticated API key disclosure in versions up to, a… | — | wordfence |
| 86bb44f0-142d-4c4e-8fc5-a50526118130 | < 3.76 |
MEDIUM | 5.3 | Multiple ServMask Plugins for WordPress are vulnerable to unauthorized modification of data due to a missing capability … | — | wordfence |
| 8685fabe-2b22-45ee-a1ff-7326b6106749 | < 2.2.2 |
MEDIUM | 5.3 | The Audio Editor & Recorder plugin for WordPress is vulnerable to unauthorized access due to a missing capability check … | — | wordfence |
| 867f374c-633f-4384-aa2b-5bb8daa5b7a2 | < 4.9.6 |
MEDIUM | 5.3 | The Newsletters plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includin… | — | wordfence |
| 86741f4a-8700-45dd-8998-b3f0387c27ed | < 2.06 |
MEDIUM | 5.3 | The WP Reset plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, … | — | wordfence |
| 866b4ca8-563f-4a19-bbf7-79a79f07d53d | < 4.0.8 |
MEDIUM | 5.3 | The Cookie Banner, Cookie Consent, Consent Log, Cookie Scanner, Script Blocker (for GDPR, CCPA & ePrivacy) : WP Cookie C… | — | wordfence |
| 865dbcf5-7990-40f3-bb90-3ae359b52c6f | MEDIUM | 5.3 | The Alchemist Ajax Upload plugin for WordPress is vulnerable to unauthorized media file deletion due to a missing capabi… | — | wordfence | |
| 8620bbc1-efb2-471d-89fc-02e945675e65 | < 2.12.16 |
MEDIUM | 5.3 | The Simple Job Board plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and includi… | — | wordfence |
| 861ece65-bee7-4124-b1a8-de9fb0c1cbc7 | < 6.6.5 |
MEDIUM | 5.3 | The Essential Addons for Elementor β Popular Elementor Templates & Widgets plugin for WordPress is vulnerable to Infor… | — | wordfence |
| 860747b9-46ab-4c97-af36-f2e104043be0 | < 1.6.0 |
MEDIUM | 5.3 | The Solace Extra plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.5.3.… | — | wordfence |
| 86055b1b-23a6-4e33-8818-0af58c8e6383 | < 2.6 |
MEDIUM | 5.3 | The WiserNotify Social Proof plugin for WordPress is vulnerable to unauthorized modification of data due to a missing ca… | — | wordfence |
| 85f7c69d-0b48-47af-9451-3cfd4326ffe5 | < 2.0.59 |
MEDIUM | 5.3 | The Related Posts, Inline Related Posts, Contextual Related Posts, Related Content By PickPlugins plugin for WordPress i… | — | wordfence |
| 85c56443-1e59-45b2-b1e3-c644c39c6bf6 | MEDIUM | 5.3 | The wpLike2Get plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including… | — | wordfence | |
| 85a19135-2936-4f48-9bf8-1c160ca58f9e | < 6.0.9.5 |
MEDIUM | 5.3 | The RegistrationMagic plugin for WordPress is vulnerable to Price Manipulation in versions up to, and including, 6.0.9.4… | — | wordfence |
| 85979ad1-675b-4cfb-b3f4-c27e1b4387d5 | < 2.6.0 |
MEDIUM | 5.3 | The DELUCKS SEO plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a functio… | — | wordfence |
| 857a2728-23d8-4e16-8913-62faf52254f1 | MEDIUM | 5.3 | The MyTicket Events plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.2.4. Th… | — | wordfence | |
| 85548bc4-8f78-4610-a27f-93ae2cf43b74 | < 1.1.3 |
MEDIUM | 5.3 | The onepay Payment Gateway For WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due t… | — | wordfence |
| 855055d5-362e-4a92-9e9d-97eab328dcc3 | MEDIUM | 5.3 | The Swift Framework plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability … | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →