πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 27, 2026
Last Updated

40,383 vulnerabilities found (page 1195 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
50814285-86c8-4b1f-bafe-275e7126f139 MEDIUM 5.3 The CRM ERP Business Solution | freelancers & SME | for WordPress & WooCommerce plugin for WordPress is vulnerable to un… wordfence
507b03d5-336a-4371-abc9-45b5e04d097b
< 1.5.0
MEDIUM 5.3 The Search Analytics for WP plugin for WordPress is vulnerable to unauthorized access due to a missing capability check … wordfence
506da7ee-cf95-4fcb-90da-6363409917ab
< 1.7.22
MEDIUM 5.3 The Multi Step Form plugin for WordPress is vulnerable to unauthorized deletion of files due to a missing capability che… wordfence
5063c9e3-cc3e-4ea3-b588-f9273579ac0c
< 1.5.2
MEDIUM 5.3 The Send Users Email plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and inc… wordfence
505043c9-1373-4bb0-8b52-1614b0cf1f8a
< 10.30.27
MEDIUM 5.3 The Salon Booking System – Appointment Booking for Salons, Barbershops & Spas plugin for WordPress is vulnerable to un… wordfence
50469119-fc94-4d51-94bc-cd19076c33a0
< 5.8.12
MEDIUM 5.3 The Shopping Cart & eCommerce Store plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions… wordfence
5027a662-f27c-4a76-88ac-7b9c2e7401e9
< 2.0.10
MEDIUM 5.3 The My Tickets plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on th… wordfence
50259040-a984-42a8-8d58-cc94e349ca45
< 1.32
MEDIUM 5.3 The Video Gallery for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missi… wordfence
5008b56f-5cd4-42e5-8d7e-7b1e01b2cbf8
< 1.9.16.4
MEDIUM 5.3 The WPS Hide Login plugin for WordPress is vulnerable to Login Page Disclosure in all versions up to, and including, 1.9… wordfence
50070f1f-c639-44a7-bada-577bf88c85db MEDIUM 5.3 The Duitku Payment Gateway plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, a… wordfence
4ffc741e-9506-40a2-b3d3-48ed5d06bc62 MEDIUM 5.3 The Pay with Contact Form 7 plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, … wordfence
4fee56b5-dfd8-486c-ae93-91fdbc4687c9
< 1.3.1
MEDIUM 5.3 The Fortis for WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to 1.… wordfence
4fe81113-6ed1-48f2-a6d0-db4c19f6df10
< 3.0.6
MEDIUM 5.3 The Visual Form Builder WordPress plugin before 3.0.6 does not perform access control on entry form export, allowing una… wordfence
4fe0a08e-eee2-4d48-bb38-dd58bff79118
< 1.0.4
MEDIUM 5.3 The Awesome Hotel Booking plugin for WordPress is vulnerable to unauthorized modification of data due to incorrect autho… wordfence
4fc76e1c-546f-4ecd-bd3b-a6f21b2c65bf
< 4.5.4
MEDIUM 5.3 The BizPrint plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the … wordfence
4fa205d7-61ce-4ab9-b532-fd0b46b0f6a0
< 3.1.4
MEDIUM 5.3 The Wp Social Login and Register Social Counter plugin for WordPress is vulnerable to missing authorization in versions … wordfence
4f954b02-b636-438b-a4b1-9b74df153c47
< 3.2.0
MEDIUM 5.3 The Comment Edit Core – Simple Comment Editing plugin for WordPress is vulnerable to Sensitive Information Exposure in… wordfence
4f89e8ef-1fcb-470d-9fa2-bbe92b406cd6
< 2.23.1
MEDIUM 5.3 The Ezoic plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in v… wordfence
4f76d908-91e7-4933-afab-9a7bfe18e088
< 2.1.9
MEDIUM 5.3 The Masteriyo LMS – LMS Course Builder, Quizzes & Certificates plugin for WordPress is vulnerable to unauthorized acce… wordfence
4f76181a-8fb4-4f0e-b84c-0dabc482261d
< 1.9.5
MEDIUM 5.3 The Arconix FAQ plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability chec… wordfence
4f665145-6556-4f3b-bcfd-28daeec7d496
< 4.7.6
MEDIUM 5.3 The WP Helper Premium plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to 4.7.6. This… wordfence
4f64dbf2-b75a-4a35-9b4e-413b8fd1fff0
< 8.0.2
MEDIUM 5.3 The LifterLMS – WP LMS for eLearning, Online Courses, & Quizzes plugin for WordPress is vulnerable to Unauthenticated … wordfence
4f555084-2dd5-4c48-ac0e-4e0bb562ac70
< 7.8.9.3
MEDIUM 5.3 The Hustle – Email Marketing, Lead Generation, Optins, Popups plugin for WordPress is vulnerable to Sensitive Informat… wordfence
4f4099b3-6c79-42c2-be41-4ad8d73cc2b8
< 1.7.7
MEDIUM 5.3 The Product Catalog Simple plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to 1.… wordfence
4f289527-3a89-4db9-887d-fb0980848734
< 4.9.10
MEDIUM 5.3 The MC4WP plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'li… wordfence
← Prev 1192 1193 1194 1195 1196 1197 1198 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top