πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 27, 2026
Last Updated

40,383 vulnerabilities found (page 1167 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
874c1ba5-1bbd-43ac-bc5c-901638fa56ef
< 1.2.11
MEDIUM 5.3 The Database Collation Fix plugin for WordPress is vulnerable to time-based SQL Injection via the 'force-collation-algor… wordfence
874b3448-df4c-49c4-bf4f-435cf48f6305
< 5.0.1
MEDIUM 5.3 The Guest posting / Frontend Posting / Front Editor – WP Front User Submit plugin for WordPress is vulnerable to unaut… wordfence
873d82ef-cc73-4294-a972-9cd5392d3b54
< 5.14
MEDIUM 5.3 The NM Gift Registry and Wishlist Lite plugin for WordPress is vulnerable to unauthorized access due to a missing capabi… wordfence
872f216c-b8ed-409d-a7eb-f5187ea2b8dd
< 1.2.3
MEDIUM 5.3 The Pranayama Yoga theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a funct… wordfence
86edc116-054f-4962-a57c-0ce7e1b8ff8c
< 1.0.2
MEDIUM 5.3 The StickEasy Protected Contact Form plugin for WordPress is vulnerable to Sensitive Information Disclosure in all versi… wordfence
86ebb3d1-5fd1-48cb-95b7-f82014323f01
< 5.2.5.1
MEDIUM 5.3 The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is … wordfence
86d01f1b-f1f3-4d28-8fd9-6f17d610a38c
< 4.1.3
MEDIUM 5.3 The Advanced WooCommerce Product Sales Reporting – Statistics & Forecast plugin for WordPress is vulnerable to Sensiti… wordfence
86c9bcf1-c69e-47ca-b74b-8ce6157f520b
< 1.3.71
MEDIUM 5.3 The Royal Elementor Addons plugin for WordPress is vulnerable to unauthenticated API key disclosure in versions up to, a… wordfence
86bb44f0-142d-4c4e-8fc5-a50526118130
< 3.76
MEDIUM 5.3 Multiple ServMask Plugins for WordPress are vulnerable to unauthorized modification of data due to a missing capability … wordfence
8685fabe-2b22-45ee-a1ff-7326b6106749
< 2.2.2
MEDIUM 5.3 The Audio Editor & Recorder plugin for WordPress is vulnerable to unauthorized access due to a missing capability check … wordfence
867f374c-633f-4384-aa2b-5bb8daa5b7a2
< 4.9.6
MEDIUM 5.3 The Newsletters plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includin… wordfence
86741f4a-8700-45dd-8998-b3f0387c27ed
< 2.06
MEDIUM 5.3 The WP Reset plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, … wordfence
866b4ca8-563f-4a19-bbf7-79a79f07d53d
< 4.0.8
MEDIUM 5.3 The Cookie Banner, Cookie Consent, Consent Log, Cookie Scanner, Script Blocker (for GDPR, CCPA & ePrivacy) : WP Cookie C… wordfence
865dbcf5-7990-40f3-bb90-3ae359b52c6f MEDIUM 5.3 The Alchemist Ajax Upload plugin for WordPress is vulnerable to unauthorized media file deletion due to a missing capabi… wordfence
8620bbc1-efb2-471d-89fc-02e945675e65
< 2.12.16
MEDIUM 5.3 The Simple Job Board plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and includi… wordfence
861ece65-bee7-4124-b1a8-de9fb0c1cbc7
< 6.6.5
MEDIUM 5.3 The Essential Addons for Elementor – Popular Elementor Templates & Widgets plugin for WordPress is vulnerable to Infor… wordfence
860747b9-46ab-4c97-af36-f2e104043be0
< 1.6.0
MEDIUM 5.3 The Solace Extra plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.5.3.… wordfence
86055b1b-23a6-4e33-8818-0af58c8e6383
< 2.6
MEDIUM 5.3 The WiserNotify Social Proof plugin for WordPress is vulnerable to unauthorized modification of data due to a missing ca… wordfence
85f7c69d-0b48-47af-9451-3cfd4326ffe5
< 2.0.59
MEDIUM 5.3 The Related Posts, Inline Related Posts, Contextual Related Posts, Related Content By PickPlugins plugin for WordPress i… wordfence
85c56443-1e59-45b2-b1e3-c644c39c6bf6 MEDIUM 5.3 The wpLike2Get plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including… wordfence
85a19135-2936-4f48-9bf8-1c160ca58f9e
< 6.0.9.5
MEDIUM 5.3 The RegistrationMagic plugin for WordPress is vulnerable to Price Manipulation in versions up to, and including, 6.0.9.4… wordfence
85979ad1-675b-4cfb-b3f4-c27e1b4387d5
< 2.6.0
MEDIUM 5.3 The DELUCKS SEO plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a functio… wordfence
857a2728-23d8-4e16-8913-62faf52254f1 MEDIUM 5.3 The MyTicket Events plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.2.4. Th… wordfence
85548bc4-8f78-4610-a27f-93ae2cf43b74
< 1.1.3
MEDIUM 5.3 The onepay Payment Gateway For WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due t… wordfence
855055d5-362e-4a92-9e9d-97eab328dcc3 MEDIUM 5.3 The Swift Framework plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability … wordfence
← Prev 1164 1165 1166 1167 1168 1169 1170 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top