Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1171 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| 8122afe3-35bf-463b-8443-c093f00bf210 | < 2.3.0 |
MEDIUM | 5.3 | The WP Ultimate Review plugin for WordPress is vulnerable to bypass review restrictions in all versions up to, and inclu… | — | wordfence |
| 811253a4-6dc9-45a2-b08f-74069fdcc9ea | < 7.5.0 |
MEDIUM | 5.3 | The Speed Optimizer β The All-In-One WordPress Performance-Boosting Plugin plugin for WordPress is vulnerable to unaut… | — | wordfence |
| 80bfb470-a3df-497f-940d-051ccaa6215b | < 240315 |
MEDIUM | 5.3 | The s2Member β Best Membership Plugin for All Kinds of Memberships, Content Restriction Paywalls & Member Access Subsc… | — | wordfence |
| 809472d5-1698-42da-b414-1dda40983a6e | < 2.2.18 |
MEDIUM | 5.3 | The Quick View for WooCommerce plugin for WordPress is vulnerable to Information Exposure in all versions up to, and inc… | — | wordfence |
| 8056cf18-8059-44dc-8ca9-54b252d3a4a7 | < 2.1.3 |
MEDIUM | 5.3 | The WP CTA β Sticky CTA Builder, Generate Leads, Promote Sales plugin for WordPress is vulnerable to unauthorized acce… | — | wordfence |
| 8055886f-d0a9-4784-8430-41816db6c884 | < 3.7.34 |
MEDIUM | 5.3 | In wp-includes/comment-template.php in WordPress before 5.4.2, comments from a post or page could sometimes be seen in t… | — | wordfence |
| 804169d3-a53a-42ba-821d-e9647ac075c4 | < 7.5.0 |
MEDIUM | 5.3 | The Restricted Site Access plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 6… | — | wordfence |
| 80399759-88dd-478d-a20e-04e8750e12c4 | < 8.1.11 |
MEDIUM | 5.3 | The Quiz And Survey Master plugin for WordPress is vulnerable to exessive quiz attempts due to a missing validation chec… | — | wordfence |
| 80388709-77ee-4f18-9da2-b99f562a20cd | < 1.3.15 |
MEDIUM | 5.3 | An issue was discovered in by-email/by-email.php in the Invite Anyone plugin before 1.3.15 for WordPress. A user is able… | — | wordfence |
| 80334e81-c33d-464c-9409-f49c34681890 | < 2.1.11 |
MEDIUM | 5.3 | The Minify HTML plugin for WordPress is vulnerable to Regular Expression Denial of Service (ReDoS) in all versions up to… | — | wordfence |
| 801f7c4d-472d-4f0d-9d99-3b3a28f5e3f9 | < 4.2 |
MEDIUM | 5.3 | The Protect WP Admin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fu… | — | wordfence |
| 7ffddc03-d4ae-460e-972a-98804d947d09 | < 2.8.7 |
MEDIUM | 5.3 | The Ultimate Member β User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plu… | — | wordfence |
| 7ff92bf8-371e-4d47-881c-a0f9eadc5061 | < 6.2.1 |
MEDIUM | 5.3 | The Kirki β Freeform Page Builder, Website Builder & Customizer plugin for WordPress is vulnerable to unauthorized acc… | — | wordfence |
| 7fed4607-7431-41c0-84d9-86731e5ea744 | MEDIUM | 5.3 | The Wanderland theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function … | — | wordfence | |
| 7fc8862f-f3d9-4eb8-90ab-bde23a636f1d | MEDIUM | 5.3 | The WooCommerce Loyal Customers plugin for WordPress is vulnerable to unauthorized access due to a missing capability ch… | — | wordfence | |
| 7fb0cb21-6645-4a28-a78c-d5dbeaddbf21 | < 1.2.4 |
MEDIUM | 5.3 | The Conditional Checkout Fields & Edit Checkout Fields for WooCommerce plugin for WordPress is vulnerable to unauthorize… | — | wordfence |
| 7f7a8ee7-af69-4aff-abf7-6d69d920fe61 | < 2.0 |
MEDIUM | 5.3 | The Spam Free WordPress plugin for WordPress is vulnerable to IP Protection Bypass in versions up to, and including, 1.9… | — | wordfence |
| 7f6ecf14-669a-41a6-bacd-de64d497be50 | MEDIUM | 5.3 | The Precious Metals Automated Product Pricing β Pro plugin for WordPress is vulnerable to unauthorized access due to a… | — | wordfence | |
| 7f5c5f64-a864-4ce1-9080-19f7c4418307 | < 3.9.6 |
MEDIUM | 5.3 | The Tutor LMS β eLearning and online course solution plugin for WordPress is vulnerable to Sensitive Information Expos… | — | wordfence |
| 7f4ee2ab-7741-4c5c-b8aa-19577c1293b8 | < 4.1.4 |
MEDIUM | 5.3 | The Houzez theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in a… | — | wordfence |
| 7f47ab91-7d91-4231-91ef-66c556ad8496 | < 2.17.14 |
MEDIUM | 5.3 | The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to Information Exposure in all vers… | — | wordfence |
| 7f2c39f6-3d37-4765-99e8-023610856b61 | < 5.1.3 |
MEDIUM | 5.3 | The MW WP Form plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 5.1.2 vi… | — | wordfence |
| 7f0741c1-a5d7-41a4-a739-2cb7cb836509 | < 10.0.05 |
MEDIUM | 5.3 | The WP Go Maps (formerly WP Google Maps) plugin for WordPress is vulnerable to unauthorized modification of data due to … | — | wordfence |
| 7efa41a3-4752-451c-a2d8-1dce9781dd6f | < 2.4.0 |
MEDIUM | 5.3 | The follow-my-blog-post plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and … | — | wordfence |
| 7ee89f85-7d2a-4b8f-85e3-c742b6878b6a | < 1.2.8 |
MEDIUM | 5.3 | The GeekyBot plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 1.2.… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →