πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 27, 2026
Last Updated

40,383 vulnerabilities found (page 1193 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
54a26e12-22b1-4690-ac66-4a6a7997e8df
< 3.8.4.10
MEDIUM 5.3 The Pie Register – User Registration, Profiles & Content Restriction plugin for WordPress is vulnerable to unauthorize… wordfence
549788e3-e31a-46a6-a2de-361747c98514
< 2.8.4
MEDIUM 5.3 The WooCommerce Canada Post Shipping plugin for WordPress is vulnerable to unauthorized access due to a missing capabili… wordfence
5480a151-3e3a-46ba-9712-6c61fba06812
< 1.119.9
MEDIUM 5.3 The PeachPay β€” Payments & Express Checkout for WooCommerce (supports Stripe, PayPal, Square, Authorize.net) plugin for… wordfence
54697909-c9f8-4395-806a-c288c79ac339
< 3.26.7
MEDIUM 5.3 The Wishlist Member plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and excl… wordfence
546649fd-d85f-4983-b36b-62ed4a987664 MEDIUM 5.3 The Embed and Integrate Etsy Shop plugin for WordPress is vulnerable to unauthorized access due to a missing capability … wordfence
5463548c-22bd-4645-a94d-ee8c6a236337
< 8.6.0
MEDIUM 5.3 The WPBot – AI ChatBot for Live Support, Lead Generation, AI Services plugin for WordPress is vulnerable to Sensitive … wordfence
5401221c-68cb-477d-b422-d5d65fc8286b MEDIUM 5.3 The Order Tracking plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a func… wordfence
53fffd10-17a2-4b60-a19c-a89229e27872
< 2.13.3
MEDIUM 5.3 The Newspack Newsletters plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability c… wordfence
53dfe8e5-5f13-4c8c-a62e-9da57379da7a
< 2.3.0
MEDIUM 5.3 The Debug Log Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and in… wordfence
53df8dac-a446-425b-bdde-939ab38e5a29
< 1.4.6
MEDIUM 5.3 The FOX plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in ver… wordfence
53db0f72-3353-42bb-ad75-4c5aa32d7939
< 8.5.7
MEDIUM 5.3 The NEX-Forms – Ultimate Form Builder – Contact forms and much more plugin for WordPress is vulnerable to unauthoriz… wordfence
53b3d441-4938-435f-85c3-707477f0293d
< 2.7.6
MEDIUM 5.3 The AI ChatBot with ChatGPT and Content Generator by AYS plugin for WordPress is vulnerable to unauthorized access and m… wordfence
538e9ce3-2d48-44ad-bd08-8eead3ef15c3
< 4.7.5
MEDIUM 5.3 The Author Box, Guest Author and Co-Authors for Your Posts – Molongui plugin for WordPress is vulnerable to Sensitive … wordfence
538669c7-3237-4059-85dc-4f4af1ff5a19
< 3.2.3
MEDIUM 5.3 The Traffic Monitor plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability … wordfence
5386452a-02f9-465e-b992-c36e4d6dd63d
< 7.2.3
MEDIUM 5.3 The Stylish Price List plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a … wordfence
53592fea-573c-49ce-b4a7-d8e9e97d8ba6
< 1.19.5
MEDIUM 5.3 The Mail Mint plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function … wordfence
5347f988-6ee3-4e9b-ab55-4debe074aa12
< 1.2.6
MEDIUM 5.3 The WP Wand plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several funct… wordfence
534557b0-16d2-4a77-a118-b66fc7474ecf
< 4.2.0
MEDIUM 5.3 The Dokan Pro plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the… wordfence
53307cb0-5016-4991-829d-7299061adf29
< 4.21.0
MEDIUM 5.3 The MStore API plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… wordfence
532cffdb-16e8-4ced-9477-483c96db343c
< 2.1.9
MEDIUM 5.3 The LWS Hide Login plugin for WordPress is vulnerable to protection mechanism bypass in all versions up to, and includin… wordfence
531360c6-e78a-4344-be06-95735337a2d6
< 9.0.49
MEDIUM 5.3 The WP Go Maps (formerly WP Google Maps) plugin for WordPress is vulnerable to Cache Poisoning in all versions up to, an… wordfence
52e4f79f-1148-4530-8d78-377a7365978a MEDIUM 5.3 The Admin side data storage for Contact Form 7 plugin for WordPress is vulnerable to unauthorized modification of data d… wordfence
52e3c4c0-1690-4982-86c3-0e90ce11d835
< 2.1.1
MEDIUM 5.3 The My Tickets – Accessible Event Ticketing plugin for WordPress is vulnerable to Sensitive Information Exposure in al… wordfence
52c2aae5-17c2-45eb-b55f-bb27555fb1f7
< 6.4.6
MEDIUM 5.3 The Perfect Images (Manage Image Sizes, Thumbnails, Replace, Retina) plugin for WordPress is vulnerable to Sensitive Inf… wordfence
52bd0d4d-4a08-417c-a426-6bd981f43120
< 2.3.4
MEDIUM 5.3 The JW Player for WordPress plugin for WordPress is vulnerable to unauthorized access due to a missing capability check … wordfence
← Prev 1190 1191 1192 1193 1194 1195 1196 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top