Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1178 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| 72b95777-d17b-4504-95fd-c83b18106b9e | < 4.9.3 |
MEDIUM | 5.3 | The Secure Copy Content Protection and Content Locking plugin for WordPress is vulnerable to sensitive information expos… | — | wordfence |
| 72b6c411-36f5-4104-b5f3-3b92915ad54a | < 1.3.4.34 |
MEDIUM | 5.3 | The Cancel Order & Request Woocommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capabi… | — | wordfence |
| 72b3cbe6-f4a6-4a28-90c3-0e03bb8c88b0 | MEDIUM | 5.3 | The Gauge theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in ve… | — | wordfence | |
| 7299e46f-6cff-4ecc-8c2b-100c26907c91 | < 3.2.0 |
MEDIUM | 5.3 | The Gutenberg & Elementor Templates Importer For Responsive plugin for WordPress is vulnerable to unauthorized access du… | — | wordfence |
| 7289e651-a959-4cf1-8e45-538bae22029a | < 1.12.6 |
MEDIUM | 5.3 | The Envira Gallery – Image Photo Gallery, Albums, Video Gallery, Slideshows & More plugin for WordPress is vulnerable … | — | wordfence |
| 7253cc66-3c57-4ba6-98dc-f7620c577f97 | < 6.4.24 |
MEDIUM | 5.3 | The Business Directory Plugin – Easy Listing Directories for WordPress plugin for WordPress is vulnerable to unauthori… | — | wordfence |
| 7249469c-a46d-40fc-bf05-ae0bef72e655 | < 1.6.12.6 |
MEDIUM | 5.3 | The Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable to u… | — | wordfence |
| 72463469-5069-446d-bd83-d31598422cb2 | < 5.0.14 |
MEDIUM | 5.3 | The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution – Build Your Own Amazon, eBay, Etsy plugin for Word… | — | wordfence |
| 723ad7b4-8a16-4995-af13-fd6f79f4904b | MEDIUM | 5.3 | The Slazzer Background Changer plugin for WordPress is vulnerable to unauthorized access due to a missing capability che… | — | wordfence | |
| 7235f5b9-43a6-4290-a6b6-f93ed8c7fa5d | < 4.23.0 |
MEDIUM | 5.3 | The hCaptcha for WP plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… | — | wordfence |
| 72320980-733d-4fe6-9a13-39c476b77298 | < 4.6 |
MEDIUM | 5.3 | The BitFire Security – Firewall, WAF, Bot/Spam Blocker, Login Security plugin for WordPress is vulnerable to Sensitive… | — | wordfence |
| 722c666b-913f-4289-82e6-30aa0a3abc2b | < 5.1.3 |
MEDIUM | 5.3 | The Rede Itaú for WooCommerce plugin for WordPress is vulnerable to order status manipulation due to insufficient verif… | — | wordfence |
| 7227f835-4f80-4274-9300-ed99e44167be | MEDIUM | 5.3 | The BERTHA AI plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function … | — | wordfence | |
| 72094f97-c1cc-48df-9c88-1352e6d6e67e | < 3.7.2 |
MEDIUM | 5.3 | Jetpack up to 3.7.1 is affected by an information disclosure vulnerability. | — | wordfence |
| 71e8c2ae-7ed2-4b8a-a0ac-06ca6f2f2ecf | MEDIUM | 5.3 | The GS Portfolio for Envato plugin for WordPress is vulnerable to unauthorized access due to a missing capability check … | — | wordfence | |
| 71e55161-f5ad-44e5-8a61-ce48c05e6dba | < 5.7.0 |
MEDIUM | 5.3 | The Media File Renamer: Rename Files (Manual, Auto & AI) plugin for WordPress is vulnerable to Sensitive Information Exp… | — | wordfence |
| 71e03764-f8e8-467c-8657-e4b44bdbdc35 | < 1.7 |
MEDIUM | 5.3 | The Copy Move Posts plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… | — | wordfence |
| 71de0365-9ea6-48af-b6e1-98d1c87b780b | < 2.8.2 |
MEDIUM | 5.3 | The Membership For WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capability che… | — | wordfence |
| 71c87b41-6c90-4b4e-aa63-5db65d7b9e51 | MEDIUM | 5.3 | The 診æ–ジェãƒãƒ¬ãƒ¼ã‚¿ä½œæˆãƒ—ラグイン plugin for WordPress is vulnerable to unauthorized access due to a mis… | — | wordfence | |
| 71c7ed80-dd39-4581-8792-31dbc75471e6 | < 2.2.1 |
MEDIUM | 5.3 | The MBE eShip plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including,… | — | wordfence |
| 71b521b5-acb5-4439-90f8-7d341291d583 | < 2.0.3 |
MEDIUM | 5.3 | vars.php in WordPress 2.0.2, possibly when running on Mac OS X, allows remote attackers to spoof their IP address via a … | — | wordfence |
| 71a45950-bae1-4b14-8935-251b8713c570 | < 2.7.3 |
MEDIUM | 5.3 | The Product Delivery Date for WooCommerce – Lite plugin for WordPress is vulnerable to unauthorized modification of da… | — | wordfence |
| 7193052f-1bef-426c-b0fe-4d70931f47ed | < 14.1.00 |
MEDIUM | 5.3 | The WooCommerce Amazon Affiliates - Wordpress Plugin plugin for WordPress is vulnerable to unauthorized access due to a … | — | wordfence |
| 7191955e-0db1-4ad1-878b-74f90ca59c91 | < 4.10.2 |
MEDIUM | 5.3 | The LearnDash LMS plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includ… | — | wordfence |
| 715e3947-922e-4549-b601-6a2ae441ddf6 | < 2.0.2 |
MEDIUM | 5.3 | The PeproDev Ultimate Invoice plugin for WordPress is vulnerable to unauthorized access due to a missing capability chec… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →