πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 27, 2026
Last Updated

40,383 vulnerabilities found (page 1181 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
6d3cff57-ea8a-4082-bc05-d62b9d92f0e6 MEDIUM 5.3 The Hide login page plugin for WordPress is vulnerable to protection mechanism bypass in all versions up to, and includi… wordfence
6d24b714-d107-403e-a711-28efc7c29910
< 1.0.7
MEDIUM 5.3 The Authorsy – Author Box, Multiple Authors, Guest Authors & Post Rating plugin for WordPress is vulnerable to Insecur… wordfence
6d12ab8c-d5d0-4e02-986e-e894fae073e5
< 1.3.7
MEDIUM 5.3 The Page Restriction WordPress (WP) – Protect WP Pages/Post plugin for WordPress is vulnerable to Sensitive Informatio… wordfence
6cf863ce-743e-45d0-9113-e1eb8b2e8440 MEDIUM 5.3 The Staff Training plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a func… wordfence
6cf836c6-9a78-46c7-885f-a52024669dde
< 1.4.0.4
MEDIUM 5.3 The Asset CleanUp: Page Speed Booster plugin for WordPress is vulnerable to unauthorized access due to a missing capabil… wordfence
6ce57b12-2241-416b-b466-aa06ca8c7551
< 4.3.3
MEDIUM 5.3 The YayMail – WooCommerce Email Customizer plugin for WordPress is vulnerable to unauthorized license key deletion due… wordfence
6cd209ea-4698-4131-9441-1a8a92603153
< 1.3.2
MEDIUM 5.3 The Registration & Login with Mobile Phone Number for WooCommerce plugin for WordPress is vulnerable to unauthorized acc… wordfence
6cc6d71c-fb19-4142-a8be-4175afc1713c
< 3.7.31
MEDIUM 5.3 In WordPress before 5.2.4, unauthenticated viewing of certain content is possible because the static query property is m… wordfence
6cc65564-bda7-4e59-be74-f0341913618f
< 1.9.2
MEDIUM 5.3 The Stripe Payments For WooCommerce by Checkout Plugins plugin for WordPress is vulnerable to Insecure Direct Object Ref… wordfence
6ca11df6-83e3-48b5-84b8-3f3e4f75ac4a
< 4.1.4
MEDIUM 5.3 The Netcash WooCommerce Payment Gateway plugin for WordPress is vulnerable to unauthorized modification of data due to a… wordfence
6c7a0476-90ab-4022-a57a-a323a1ef8f20 MEDIUM 5.3 The Custom PC Builder Lite for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing ca… wordfence
6c728fa3-e917-40ca-84ca-e907c22b0a3f
< 4.6
MEDIUM 5.3 The SearchIQ – The Search Solution plugin for WordPress is vulnerable to Sensitive Information Exposure in all version… wordfence
6c4baf2e-7f5e-4954-88f9-76d32f297aab MEDIUM 5.3 The LadiApp plugn for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on … wordfence
6c31dcd9-e03e-448a-9f02-a4434169a72c
< 8.5.4
MEDIUM 5.3 The WPC Product Bundles for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capab… wordfence
6c0a8be1-8853-4863-90e5-af3831f800e9
< 5.6.5
MEDIUM 5.3 The WC Product Table Lite plugin for WordPress is vulnerable to CSS Injection in versions up to, and including, 5.6.0 vi… wordfence
6bf61bb7-f977-4afe-bb81-e6de12e00b03 MEDIUM 5.3 The Appmax plugin for WordPress is vulnerable to Improper Input Validation in all versions up to, and including, 1.0.3. … wordfence
6ba532bd-308a-49e5-a413-54de34ac1c42 MEDIUM 5.3 The EasyTest plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function i… wordfence
6ba500fd-3d39-4f5d-a73a-aa777ca03e7f
< 4.7.7
MEDIUM 5.3 The FoodBook theme for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4… wordfence
6b98ea22-4c82-45c6-8e29-75cc9a9185be MEDIUM 5.3 The Essential Chat Support plugin for WordPress is vulnerable to authorization bypass in all versions up to, and includi… wordfence
6b84b13a-b46c-48fc-a7a8-de32c575d576
< 16.26.7
MEDIUM 5.3 The WP-Recall – Registration, Profile, Commerce & More plugin for WordPress is vulnerable to unauthorized loss of data… wordfence
6b71c620-30f2-4d03-8f3c-af6f79e0da28
< 1.3.3
MEDIUM 5.3 The Business One Page theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a fu… wordfence
6b1f98d1-ced5-4604-83b7-e0bedc5d4915
< 4.3.14
MEDIUM 5.3 The Bayarcash WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on… wordfence
6aed9434-1681-47d6-bbc1-0815db548a24
< 1.91.1
MEDIUM 5.3 The WP-PostRatings plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 1.91. Thi… wordfence
6adb2f80-375a-4302-ac41-7f2b87999751
< 1.2.3
MEDIUM 5.3 The App Landing Page theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… wordfence
6ad895db-5fe9-419b-8884-9a840bd350f6
< 2.9.9.3.5
MEDIUM 5.3 The Pinpoint Booking System plugin for WordPress is vulnerable to content spoofing in versions up to, and including, 2.9… wordfence
← Prev 1178 1179 1180 1181 1182 1183 1184 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top