ðŸ›¡ï¸ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 27, 2026
Last Updated

40,383 vulnerabilities found (page 1178 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
72b95777-d17b-4504-95fd-c83b18106b9e
< 4.9.3
MEDIUM 5.3 The Secure Copy Content Protection and Content Locking plugin for WordPress is vulnerable to sensitive information expos… wordfence
72b6c411-36f5-4104-b5f3-3b92915ad54a
< 1.3.4.34
MEDIUM 5.3 The Cancel Order & Request Woocommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capabi… wordfence
72b3cbe6-f4a6-4a28-90c3-0e03bb8c88b0 MEDIUM 5.3 The Gauge theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in ve… wordfence
7299e46f-6cff-4ecc-8c2b-100c26907c91
< 3.2.0
MEDIUM 5.3 The Gutenberg & Elementor Templates Importer For Responsive plugin for WordPress is vulnerable to unauthorized access du… wordfence
7289e651-a959-4cf1-8e45-538bae22029a
< 1.12.6
MEDIUM 5.3 The Envira Gallery – Image Photo Gallery, Albums, Video Gallery, Slideshows & More plugin for WordPress is vulnerable … wordfence
7253cc66-3c57-4ba6-98dc-f7620c577f97
< 6.4.24
MEDIUM 5.3 The Business Directory Plugin – Easy Listing Directories for WordPress plugin for WordPress is vulnerable to unauthori… wordfence
7249469c-a46d-40fc-bf05-ae0bef72e655
< 1.6.12.6
MEDIUM 5.3 The Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable to u… wordfence
72463469-5069-446d-bd83-d31598422cb2
< 5.0.14
MEDIUM 5.3 The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution – Build Your Own Amazon, eBay, Etsy plugin for Word… wordfence
723ad7b4-8a16-4995-af13-fd6f79f4904b MEDIUM 5.3 The Slazzer Background Changer plugin for WordPress is vulnerable to unauthorized access due to a missing capability che… wordfence
7235f5b9-43a6-4290-a6b6-f93ed8c7fa5d
< 4.23.0
MEDIUM 5.3 The hCaptcha for WP plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… wordfence
72320980-733d-4fe6-9a13-39c476b77298
< 4.6
MEDIUM 5.3 The BitFire Security – Firewall, WAF, Bot/Spam Blocker, Login Security plugin for WordPress is vulnerable to Sensitive… wordfence
722c666b-913f-4289-82e6-30aa0a3abc2b
< 5.1.3
MEDIUM 5.3 The Rede Itaú for WooCommerce plugin for WordPress is vulnerable to order status manipulation due to insufficient verif… wordfence
7227f835-4f80-4274-9300-ed99e44167be MEDIUM 5.3 The BERTHA AI plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function … wordfence
72094f97-c1cc-48df-9c88-1352e6d6e67e
< 3.7.2
MEDIUM 5.3 Jetpack up to 3.7.1 is affected by an information disclosure vulnerability. wordfence
71e8c2ae-7ed2-4b8a-a0ac-06ca6f2f2ecf MEDIUM 5.3 The GS Portfolio for Envato plugin for WordPress is vulnerable to unauthorized access due to a missing capability check … wordfence
71e55161-f5ad-44e5-8a61-ce48c05e6dba
< 5.7.0
MEDIUM 5.3 The Media File Renamer: Rename Files (Manual, Auto & AI) plugin for WordPress is vulnerable to Sensitive Information Exp… wordfence
71e03764-f8e8-467c-8657-e4b44bdbdc35
< 1.7
MEDIUM 5.3 The Copy Move Posts plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… wordfence
71de0365-9ea6-48af-b6e1-98d1c87b780b
< 2.8.2
MEDIUM 5.3 The Membership For WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capability che… wordfence
71c87b41-6c90-4b4e-aa63-5db65d7b9e51 MEDIUM 5.3 The 診断ジェãƒãƒ¬ãƒ¼ã‚¿ä½œæˆãƒ—ラグイン plugin for WordPress is vulnerable to unauthorized access due to a mis… wordfence
71c7ed80-dd39-4581-8792-31dbc75471e6
< 2.2.1
MEDIUM 5.3 The MBE eShip plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including,… wordfence
71b521b5-acb5-4439-90f8-7d341291d583
< 2.0.3
MEDIUM 5.3 vars.php in WordPress 2.0.2, possibly when running on Mac OS X, allows remote attackers to spoof their IP address via a … wordfence
71a45950-bae1-4b14-8935-251b8713c570
< 2.7.3
MEDIUM 5.3 The Product Delivery Date for WooCommerce – Lite plugin for WordPress is vulnerable to unauthorized modification of da… wordfence
7193052f-1bef-426c-b0fe-4d70931f47ed
< 14.1.00
MEDIUM 5.3 The WooCommerce Amazon Affiliates - Wordpress Plugin plugin for WordPress is vulnerable to unauthorized access due to a … wordfence
7191955e-0db1-4ad1-878b-74f90ca59c91
< 4.10.2
MEDIUM 5.3 The LearnDash LMS plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includ… wordfence
715e3947-922e-4549-b601-6a2ae441ddf6
< 2.0.2
MEDIUM 5.3 The PeproDev Ultimate Invoice plugin for WordPress is vulnerable to unauthorized access due to a missing capability chec… wordfence
← Prev 1175 1176 1177 1178 1179 1180 1181 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top