πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 27, 2026
Last Updated

40,383 vulnerabilities found (page 1172 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
7ee714c7-4c9b-4627-9ba9-f83aeca6a0a5
< 4.2.6.8.2
MEDIUM 5.3 The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to unauthenticated bypass to user registratio… wordfence
7ee1660e-10c0-447b-8562-c3af07997f56 MEDIUM 5.3 The Woo Custom Emails plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit… wordfence
7ecb4f95-346e-49b3-859f-44f28a72f065
< 4.0.7.8
MEDIUM 5.3 The WP Adminify plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includin… wordfence
7eb185cf-4a9e-46e1-98ac-7349e27994ca
< 2.1.2
MEDIUM 5.3 The iCount Payment Gateway plugin for WordPress is vulnerable to unauthorized access due to a missing capability check o… wordfence
7eb0f690-c977-43de-a713-9d02ee99ba2e
< 1.2.37
MEDIUM 5.3 The Booking for Appointments and Events Calendar – Amelia plugin for WordPress is vulnerable to Sensitive Information … wordfence
7ea2726a-a601-45ac-9f20-c34b82edf441
< 5.8.1
MEDIUM 5.3 The WooCommerce Predictive Search plugin for WordPress is vulnerable to unauthorized modification of data due to a missi… wordfence
7e9acd26-c341-4ece-bcf1-102f953a4b4f
< 5.1.93
MEDIUM 5.3 The LatePoint – Calendar Booking Plugin for Appointments and Events plugin for WordPress is vulnerable to Insecure Dir… wordfence
7e95773c-b968-47b3-8ae7-9a8d3389666c
< 4.2.1
MEDIUM 5.3 The YITH WooCommerce Product Add-Ons plugin for WordPress is vulnerable to unauthorized functionality due to a missing c… wordfence
7e947678-a575-4b2c-8da1-4a801a7a642c
< 4.13.0
MEDIUM 5.3 The YITH WooCommerce Wishlist plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up … wordfence
7e8c8027-6340-40d7-b34a-34024d5b2d89
< 3.13.9
MEDIUM 5.3 The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is… wordfence
7e8b5ce7-d7ee-4feb-8524-d2f79f37ce0e MEDIUM 5.3 The Medical Equipment eCommerce WordPress Theme theme for WordPress is vulnerable to unauthorized access due to a missin… wordfence
7e503e94-f544-4b77-9a79-e51836e30806
< 1.38.1
MEDIUM 5.3 The Simple CAPTCHA Alternative with Cloudflare Turnstile plugin for WordPress is vulnerable to broken authorization in a… wordfence
7e4fe5a4-a025-43e6-9aa0-01ee9dfd2a43
< 1.5.4
MEDIUM 5.3 The Event Tickets Manager for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing cap… wordfence
7e3fe5f1-87a9-491e-8ea4-2c6160bcbc20
< 2.7.7
MEDIUM 5.3 The Wappointment plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a functi… wordfence
7e35a2e0-4008-4ebf-99d8-f35f5a707e6d MEDIUM 5.3 The Advanced Dewplayer plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a … wordfence
7dfc419d-dc45-43f2-8899-0181523180ba
< 8.0.3
MEDIUM 5.3 The Mollie Payments for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versio… wordfence
7dfa42ad-9b5d-43d6-97b6-f105d31dd141
< 4.23.0
MEDIUM 5.3 The KALLYAS - Creative eCommerce Multi-Purpose WordPress Theme theme for WordPress is vulnerable to unauthorized access … wordfence
7dd2732d-5586-404f-b3fe-98748361b5f0 MEDIUM 5.3 The Olive One Click Demo Import plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up … wordfence
7dd030ce-0457-4890-a880-89284f336e94
< 2.2.1
MEDIUM 5.3 The Masteriyo LMS plugin for WordPress is vulnerable to unauthorized access in versions up to, and including, 2.2.0. Thi… wordfence
7d713de0-40a4-4926-9942-e5e2bf7434c4
< 6.1.6
MEDIUM 5.3 The Awesome Support plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check … wordfence
7d5ab2ab-aef7-4583-9bfe-52f18d418f37 MEDIUM 5.3 The IDonatePro plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… wordfence
7d4141bd-cd3f-44e9-b423-be03377a342d
< 2.3
MEDIUM 5.3 The MainWP Child Reports plugin for WordPress is vulnerable to Missing Authorization in all versions up to and including… wordfence
7d40c658-a156-470e-bf93-a1f2ccec9c61
< 4.1.0
MEDIUM 5.3 The Visual Website Collaboration, Feedback & Project Management – Atarim plugin for WordPress is vulnerable to unautho… wordfence
7d2bfbce-8e50-415c-997e-881b240c5807
< 4.1133
MEDIUM 5.3 The RepairBuddy – Repair Shop CRM & Booking Plugin for WordPress plugin for WordPress is vulnerable to Sensitive Infor… wordfence
7d25cca1-eb57-4ba2-8923-a3c56f41ce22
< 3.9.8
MEDIUM 5.3 The Profile Builder plugin for WordPress is vulnerable to unauthorized page creation due to a missing capability check o… wordfence
← Prev 1169 1170 1171 1172 1173 1174 1175 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top