πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 27, 2026
Last Updated

40,383 vulnerabilities found (page 1176 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
768730c1-a70e-432d-a234-4ce2b8aec424
< 3.8.4.1
MEDIUM 5.3 The Registration Forms – User Registration Forms, Invitation-Based Registrations, Front-end User Profile, Login Form &… wordfence
76698491-f41a-4184-8b80-fce4a6ff2e04 MEDIUM 5.3 The NextGEN Download Gallery plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to,… wordfence
7663359c-259e-4d74-8e62-ef4adda3a693
< 2.1.7
MEDIUM 5.3 The Download After Email – Subscribe & Download Form Plugin plugin for WordPress is vulnerable to unauthorized repeate… wordfence
765d0933-8db2-471c-ad4e-e19d3b4ff015
< 3.4.3
MEDIUM 5.3 The EventPrime – Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to payment bypass in all ver… wordfence
7641cae5-e173-490d-95c3-754d574eda34
< 3.5.12
MEDIUM 5.3 The sober theme for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.5.… wordfence
763f0c23-49c8-4e7a-b1c1-d33eb5b1b7c2
< 1.7.8
MEDIUM 5.3 The WordPress Flipbook by Supsystic plugin for WordPress is vulnerable to unauthorized access due to a missing capabilit… wordfence
7632fe73-4011-4e6e-8ce7-38a9359ac259 MEDIUM 5.3 The Laposta plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 1.12. This … wordfence
7615c391-ccb1-4990-bbfd-949782cc609a
< 3.2.14
MEDIUM 5.3 The Membership Plugin – Restrict Content plugin for WordPress is vulnerable to Sensitive Information Exposure in all v… wordfence
760573ff-bb19-46d2-9a3f-f82875585571
< 5.1.22
MEDIUM 5.3 The Appointment Booking & Scheduling Plugin β€” Webba Booking Calendar plugin for WordPress is vulnerable to unauthorize… wordfence
75fc5104-04c4-4a9d-9c9e-dcb15182120b MEDIUM 5.3 The BackItUp plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function i… wordfence
75f87f99-9f0d-46c2-a6f1-3c1ea0176303
< 3.59.1
MEDIUM 5.3 The WordPress Gallery Plugin – NextGEN Gallery plugin for WordPress is vulnerable to unauthorized access of data due t… wordfence
75eab54b-dbe0-4440-b4ab-601c5041e180
< 3.5.0
MEDIUM 5.3 The WP STAGING and WP STAGING Pro plugins for WordPress are vulnerable to Sensitive Information Exposure in versions up … wordfence
75e321ea-569f-450c-a120-39011568a28f MEDIUM 5.3 The KI Live Video Conferences plugin for WordPress is vulnerable to unauthorized access due to a missing capability chec… wordfence
75d65a82-145e-4d73-9c9d-8792a3d05d7e MEDIUM 5.3 The Frontend Profile plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fu… wordfence
75c325a1-1a88-4b67-a5f8-6307627d8c6a
< 1.0.1
MEDIUM 5.3 The WP User Profile Avatar plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to,… wordfence
7571a0c6-0baf-4fc0-bd6e-e792e47dffe5 MEDIUM 5.3 The CubeWP Forms – All-in-One Form Builder plugin for WordPress is vulnerable to unauthorized access due to a missing … wordfence
75386d77-44c0-4250-a71a-516f2ec42109
< 4.2.20
MEDIUM 5.3 The Passster – Password Protect Pages and Content plugin for WordPress is vulnerable to Sensitive Information Exposure… wordfence
752ec260-d405-41af-8700-7780df1aa59b
< 1.13.1
MEDIUM 5.3 The Smart Popup by Supsystic plugin for WordPress is vulnerable to unauthorized access due to a missing capability check… wordfence
752b9c5f-4c36-4182-9dd4-0e840a727ceb
< 2.7.0
MEDIUM 5.3 The Redirection for Contact Form 7 plugin for WordPress is vulnerable to authorization bypass due to a missing capabilit… wordfence
74f94c83-847e-4ee4-b0d0-f028e3439d1c
< 3.8.21
MEDIUM 5.3 The Easy Form Builder – WordPress plugin form builder: contact form, survey form, payment form, and custom form builde… wordfence
74eecbe1-0563-48f9-9846-3c67d5833f8b
< 2.4.16
MEDIUM 5.3 The Timetable and Event Schedule by MotoPress plugin for WordPress is vulnerable to Insecure Direct Object Reference in … wordfence
74e5b870-337f-4412-8110-786446c047ee
< 1.3.9
MEDIUM 5.3 The VW Photography theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a funct… wordfence
74dad6f0-0760-4420-b8cc-dc84cafd9b0d
< 4.17.4
MEDIUM 5.3 The Revolut Gateway for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a mis… wordfence
74b4a2c0-a3c1-4049-aea7-133408ebdf32
< 1.3.0
MEDIUM 5.3 The Admin Safety Guard β€” Login Security & 2FA plugin for WordPress is vulnerable to unauthorized access due to a missi… wordfence
747a3efc-c0fb-4b3c-bc17-7b6306b17d4f
< 2.3.7
MEDIUM 5.3 The Booking and Rental Manager for Bike | Car | Resort | Appointment | Dress | Equipment plugin for WordPress is vulnera… wordfence
← Prev 1173 1174 1175 1176 1177 1178 1179 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top