Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1180 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| 6fa57a14-1c74-403f-bce3-242c93bc3035 | MEDIUM | 5.3 | The KuteShop theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in… | — | wordfence | |
| 6f852a76-62fb-4797-80d3-1628e471a40f | < 2.1.3 |
MEDIUM | 5.3 | The Ai Auto Tool Content Writing Assistant (Gemini Writer, ChatGPT ) All in One plugin for WordPress is vulnerable to un… | — | wordfence |
| 6f837d6b-d1fa-4019-892a-dca3c0f29ca7 | < 1.4.0 |
MEDIUM | 5.3 | The Order Tip for WooCommerce plugin for WordPress is vulnerable to unauthorized access of data due to a missing capabil… | — | wordfence |
| 6f4835fb-72ae-498e-940e-b255a4c5ca0b | < 2.2.8 |
MEDIUM | 5.3 | The Donation Thermometer plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on … | — | wordfence |
| 6f30d8bc-0235-493d-b7c3-1994a41f67a6 | MEDIUM | 5.3 | The Guff theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in ver… | — | wordfence | |
| 6efadbe7-ee9b-44cb-b7c6-4c38a872abf2 | < 1.1 |
MEDIUM | 5.3 | The User Spam Remover plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and in… | — | wordfence |
| 6eebeb72-7a4b-46d0-a585-4e44c03d187a | < 9.3.2 |
MEDIUM | 5.3 | The Solid Security β Password, Two Factor Authentication, and Brute Force Protection plugin for WordPress is vulnerabl… | — | wordfence |
| 6ee977de-4132-48c1-b751-fcea8d28f66b | < 1.1.3 |
MEDIUM | 5.3 | The My Wp Brand β Hide menu & Hide Plugin plugin for WordPress is vulnerable to unauthorized modification of data due … | — | wordfence |
| 6ee3b70d-bf09-4e55-9200-154f842db145 | < 6.4.0 |
MEDIUM | 5.3 | The Gutenberg Essential Blocks β Page Builder for Gutenberg Blocks & Patterns plugin for WordPress is vulnerable to Se… | — | wordfence |
| 6ec2c2cd-f3b1-4db6-b184-7220b46168d0 | < 2.24.0 |
MEDIUM | 5.3 | The NextMove Lite plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a funct… | — | wordfence |
| 6ead05d3-a5b1-474f-bc72-67570ff060da | < 2.4.8 |
MEDIUM | 5.3 | The Responsive Lightbox plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabil… | — | wordfence |
| 6e95b16f-a25a-45c7-a875-2d34a1e127ce | < 4.2.5 |
MEDIUM | 5.3 | The Registration, User Profile, Membership, Content Restriction, User Directory, and Frontend Post Submission β WP Use… | — | wordfence |
| 6e766de1-10fd-43de-b487-56895a4b8db0 | < 1.18 |
MEDIUM | 5.3 | The WordPress RokNewsPager plugin is vulnerable to Abuse of Functionality via the 'src' parameter in the 'thumb.php' fil… | — | wordfence |
| 6e6f993b-ce09-4050-84a1-cbe9953f36b1 | < 6.5 |
MEDIUM | 5.3 | WordPress Core is vulnerable to Sensitive Information Exposure in versions up to, and including, 6.4.3 via the redirect… | — | wordfence |
| 6e32504a-0365-4ff7-9637-11ee04441a17 | < 4.4.0 |
MEDIUM | 5.3 | The WP Social Feed Gallery plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capa… | — | wordfence |
| 6defd072-0203-471a-96cf-579a9eebcd9f | < 2.1 |
MEDIUM | 5.3 | The RT Easy Builder β Advanced addons for Elementor plugin for WordPress is vulnerable to unauthorized plugin activati… | — | wordfence |
| 6dd2b375-546c-45bf-b4f0-55b73152a6ad | < 2.1.8 |
MEDIUM | 5.3 | The Travelly β Tour & Travel Booking Manager for WooCommerce | Tour & Hotel Booking Solution plugin for WordPress is v… | — | wordfence |
| 6dc7c5a6-513e-4aa8-9538-0ac6fb37c867 | < 4.6.1 |
MEDIUM | 5.3 | The GiveWP β Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Information Exposure in al… | — | wordfence |
| 6dc144cd-7119-477f-9fa1-b00cab215077 | < 2.1.3 |
MEDIUM | 5.3 | The Coming Soon, Under Construction & Maintenance Mode By Dazzler plugin for WordPress is vulnerable to maintenance mode… | — | wordfence |
| 6dbf9689-c812-4b7c-9df3-c4639aae3357 | < 2.3.3 |
MEDIUM | 5.3 | The Actionwear products sync plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and inclu… | — | wordfence |
| 6db51b8e-2e4b-4041-b261-d46cfdb372dc | < 1.50 |
MEDIUM | 5.3 | The Backup and Restore WordPress β Backup Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure … | — | wordfence |
| 6dadad7d-0ea9-4ac0-8d22-0acaa3fb5881 | MEDIUM | 5.3 | The Coinbase Commerce β Crypto Gateway for WooCommerce plugin for WordPress is vulnerable to unauthorized access due t… | — | wordfence | |
| 6d8f0424-41a5-415a-b2c8-f14b612dd591 | < 1.9.1 |
MEDIUM | 5.3 | The InPost PL plugin for WordPress is vulnerable to unauthorized access in versions up to, and including, 1.9.0. This is… | — | wordfence |
| 6d797f36-f485-4049-83f0-01d0cb409a92 | MEDIUM | 5.3 | The Generate Dummy Posts plugin for WordPress is vulnerable to unauthorized use of functionality due to a missing capabi… | — | wordfence | |
| 6d53cd00-3d7b-4096-bc25-354fd4020f8b | < 2.3.0 |
MEDIUM | 5.3 | The WP Job Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and inclu… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →