Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1181 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| 6d3cff57-ea8a-4082-bc05-d62b9d92f0e6 | MEDIUM | 5.3 | The Hide login page plugin for WordPress is vulnerable to protection mechanism bypass in all versions up to, and includi… | — | wordfence | |
| 6d24b714-d107-403e-a711-28efc7c29910 | < 1.0.7 |
MEDIUM | 5.3 | The Authorsy β Author Box, Multiple Authors, Guest Authors & Post Rating plugin for WordPress is vulnerable to Insecur… | — | wordfence |
| 6d12ab8c-d5d0-4e02-986e-e894fae073e5 | < 1.3.7 |
MEDIUM | 5.3 | The Page Restriction WordPress (WP) β Protect WP Pages/Post plugin for WordPress is vulnerable to Sensitive Informatio… | — | wordfence |
| 6cf863ce-743e-45d0-9113-e1eb8b2e8440 | MEDIUM | 5.3 | The Staff Training plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a func… | — | wordfence | |
| 6cf836c6-9a78-46c7-885f-a52024669dde | < 1.4.0.4 |
MEDIUM | 5.3 | The Asset CleanUp: Page Speed Booster plugin for WordPress is vulnerable to unauthorized access due to a missing capabil… | — | wordfence |
| 6ce57b12-2241-416b-b466-aa06ca8c7551 | < 4.3.3 |
MEDIUM | 5.3 | The YayMail β WooCommerce Email Customizer plugin for WordPress is vulnerable to unauthorized license key deletion due… | — | wordfence |
| 6cd209ea-4698-4131-9441-1a8a92603153 | < 1.3.2 |
MEDIUM | 5.3 | The Registration & Login with Mobile Phone Number for WooCommerce plugin for WordPress is vulnerable to unauthorized acc… | — | wordfence |
| 6cc6d71c-fb19-4142-a8be-4175afc1713c | < 3.7.31 |
MEDIUM | 5.3 | In WordPress before 5.2.4, unauthenticated viewing of certain content is possible because the static query property is m… | — | wordfence |
| 6cc65564-bda7-4e59-be74-f0341913618f | < 1.9.2 |
MEDIUM | 5.3 | The Stripe Payments For WooCommerce by Checkout Plugins plugin for WordPress is vulnerable to Insecure Direct Object Ref… | — | wordfence |
| 6ca11df6-83e3-48b5-84b8-3f3e4f75ac4a | < 4.1.4 |
MEDIUM | 5.3 | The Netcash WooCommerce Payment Gateway plugin for WordPress is vulnerable to unauthorized modification of data due to a… | — | wordfence |
| 6c7a0476-90ab-4022-a57a-a323a1ef8f20 | MEDIUM | 5.3 | The Custom PC Builder Lite for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing ca… | — | wordfence | |
| 6c728fa3-e917-40ca-84ca-e907c22b0a3f | < 4.6 |
MEDIUM | 5.3 | The SearchIQ β The Search Solution plugin for WordPress is vulnerable to Sensitive Information Exposure in all version… | — | wordfence |
| 6c4baf2e-7f5e-4954-88f9-76d32f297aab | MEDIUM | 5.3 | The LadiApp plugn for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on … | — | wordfence | |
| 6c31dcd9-e03e-448a-9f02-a4434169a72c | < 8.5.4 |
MEDIUM | 5.3 | The WPC Product Bundles for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capab… | — | wordfence |
| 6c0a8be1-8853-4863-90e5-af3831f800e9 | < 5.6.5 |
MEDIUM | 5.3 | The WC Product Table Lite plugin for WordPress is vulnerable to CSS Injection in versions up to, and including, 5.6.0 vi… | — | wordfence |
| 6bf61bb7-f977-4afe-bb81-e6de12e00b03 | MEDIUM | 5.3 | The Appmax plugin for WordPress is vulnerable to Improper Input Validation in all versions up to, and including, 1.0.3. … | — | wordfence | |
| 6ba532bd-308a-49e5-a413-54de34ac1c42 | MEDIUM | 5.3 | The EasyTest plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function i… | — | wordfence | |
| 6ba500fd-3d39-4f5d-a73a-aa777ca03e7f | < 4.7.7 |
MEDIUM | 5.3 | The FoodBook theme for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4… | — | wordfence |
| 6b98ea22-4c82-45c6-8e29-75cc9a9185be | MEDIUM | 5.3 | The Essential Chat Support plugin for WordPress is vulnerable to authorization bypass in all versions up to, and includi… | — | wordfence | |
| 6b84b13a-b46c-48fc-a7a8-de32c575d576 | < 16.26.7 |
MEDIUM | 5.3 | The WP-Recall β Registration, Profile, Commerce & More plugin for WordPress is vulnerable to unauthorized loss of data… | — | wordfence |
| 6b71c620-30f2-4d03-8f3c-af6f79e0da28 | < 1.3.3 |
MEDIUM | 5.3 | The Business One Page theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a fu… | — | wordfence |
| 6b1f98d1-ced5-4604-83b7-e0bedc5d4915 | < 4.3.14 |
MEDIUM | 5.3 | The Bayarcash WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on… | — | wordfence |
| 6aed9434-1681-47d6-bbc1-0815db548a24 | < 1.91.1 |
MEDIUM | 5.3 | The WP-PostRatings plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 1.91. Thi… | — | wordfence |
| 6adb2f80-375a-4302-ac41-7f2b87999751 | < 1.2.3 |
MEDIUM | 5.3 | The App Landing Page theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… | — | wordfence |
| 6ad895db-5fe9-419b-8884-9a840bd350f6 | < 2.9.9.3.5 |
MEDIUM | 5.3 | The Pinpoint Booking System plugin for WordPress is vulnerable to content spoofing in versions up to, and including, 2.9… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →