πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 27, 2026
Last Updated

40,383 vulnerabilities found (page 1175 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
7897ebc7-3ede-465e-b037-86096eb4435a
< 1.8.21
MEDIUM 5.3 The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to unauthorized access d… wordfence
788bd3dc-43c3-4115-b760-f04ec6d30f4e
< 1.2.0
MEDIUM 5.3 The Sell Downloads plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a func… wordfence
787cd2bb-489f-471a-82e0-073b4766b45a
< 1.12.0
MEDIUM 5.3 The Memberpress plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includin… wordfence
78794ea4-6eff-4e6f-af0a-dd8cab8ac859 MEDIUM 5.3 The Devs CRM – Manage tasks, attendance and teams all together plugin for WordPress is vulnerable to unauthorized modi… wordfence
7846dc45-206c-43b3-8a3a-84199248b262
< 3.10.0
MEDIUM 5.3 The UK Address Postcode Validation plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions … wordfence
782d6b8d-92a0-4fdf-92b0-80e964cdbcf0 MEDIUM 5.3 The Export Categories plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a f… wordfence
782bb81f-f325-4ed3-9154-3ce7831f5561
< 1.3.18
MEDIUM 5.3 The Dynamics 365 Integration plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to,… wordfence
7808329f-1688-480c-a83c-c4ab2fa86da6
< 1.5.5
MEDIUM 5.3 The WPS Hide Login plugin for WordPress is vulnerable to login page disclosure even when the settings of the plugin are … wordfence
77fcf27c-fc1c-49cf-9669-9ceb9343777c
< 0.2.47
MEDIUM 5.3 The ActiveDEMAND plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a functi… wordfence
77faa23e-4475-43d9-b475-fe999cda7b62
< 1.4.13
MEDIUM 5.3 The No Update Nag plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 1.4.1… wordfence
77d66c35-7606-4ba0-a070-4a26eba0fa36
< 3.1.5
MEDIUM 5.3 The Upsell Funnel Builder for WooCommerce – Create Upsells, Cross-Sells, Order Bumps, Frequently Bought, and Popups. p… wordfence
77b6d38e-71d1-44bc-b25b-f912c1e31ce2
< 2.2.3
MEDIUM 5.3 The Order Sync with Zendesk for WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure in vers… wordfence
77851c3a-7f6d-42af-91c6-39f3fdfd0f2f
< 4.7.2
MEDIUM 5.3 The Eupago Gateway For Woocommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capability… wordfence
778242f4-5dfa-4d72-a032-8b5521c5b8ce
< 3.4.9
MEDIUM 5.3 The Templately plugin for WordPress is vulnerable to Arbitrary File Write in all versions up to, and including, 3.4.8. T… wordfence
775fa406-ddad-465a-81f3-74a4c7399f64 MEDIUM 5.3 The Rozario theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in … wordfence
77462f1f-f7d8-4d11-aaf1-82395897fcfa
< 1.6.7
MEDIUM 5.3 The User Activity Log plugin for WordPress is vulnerable to IP Address Spoofing in versions up to and including 1.6.6. T… wordfence
77409977-6822-4d14-9842-cb6a5aff2162
< 2.0.74
MEDIUM 5.3 The Radio Player plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability che… wordfence
773e2c1f-cebb-46b8-a073-98814c274b8f
< 2.7.3
MEDIUM 5.3 The Conditional Fields for Contact Form 7 plugin for WordPress is vulnerable to Denial of Service in all versions up to,… wordfence
7732742c-e8a9-4bd0-8013-76418a563fc2
< 2.9.88
MEDIUM 5.3 The Contact List – Easy Business Directory, Staff Directory and Address Book Plugin plugin for WordPress is vulnerable… wordfence
7730d670-d270-4755-bc9a-550498a28edb MEDIUM 5.3 The Email posts to subscribers for WordPress is vulnerable to unauthorized access of data due to a missing capability ch… wordfence
7728b8d3-5f85-4411-968a-2239c05273d8
< 1.0.8
MEDIUM 5.3 The Mailercloud – Integrate webforms and synchronize website contacts plugin for WordPress is vulnerable to unauthoriz… wordfence
771ed385-587c-400f-89c6-1a827c3e2c79
< 2.0.0
MEDIUM 5.3 The Booking for Appointments and Events Calendar – Amelia plugin for WordPress is vulnerable to unauthorized access du… wordfence
770fe29d-601b-487b-b102-d5027f09fc24
< 4.0.1
MEDIUM 5.3 The what3words Address Field plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and… wordfence
770fd2b9-b226-4b6a-84f6-674061ddad93
< 9.4.0.1
MEDIUM 5.3 The Knit Pay – Cashfree, Instamojo, Razorpay, PayPal and more plugin for WordPress is vulnerable to unauthorized acces… wordfence
76d79ced-54cd-4b06-9b13-eaf7b0e02aa4
< 1.0.4
MEDIUM 5.3 The WeDesignTech Ultimate Booking Addon plugin for WordPress is vulnerable to unauthorized access due to a missing capab… wordfence
← Prev 1172 1173 1174 1175 1176 1177 1178 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top