Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1195 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| 50814285-86c8-4b1f-bafe-275e7126f139 | MEDIUM | 5.3 | The CRM ERP Business Solution | freelancers & SME | for WordPress & WooCommerce plugin for WordPress is vulnerable to un… | — | wordfence | |
| 507b03d5-336a-4371-abc9-45b5e04d097b | < 1.5.0 |
MEDIUM | 5.3 | The Search Analytics for WP plugin for WordPress is vulnerable to unauthorized access due to a missing capability check … | — | wordfence |
| 506da7ee-cf95-4fcb-90da-6363409917ab | < 1.7.22 |
MEDIUM | 5.3 | The Multi Step Form plugin for WordPress is vulnerable to unauthorized deletion of files due to a missing capability che… | — | wordfence |
| 5063c9e3-cc3e-4ea3-b588-f9273579ac0c | < 1.5.2 |
MEDIUM | 5.3 | The Send Users Email plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and inc… | — | wordfence |
| 505043c9-1373-4bb0-8b52-1614b0cf1f8a | < 10.30.27 |
MEDIUM | 5.3 | The Salon Booking System β Appointment Booking for Salons, Barbershops & Spas plugin for WordPress is vulnerable to un… | — | wordfence |
| 50469119-fc94-4d51-94bc-cd19076c33a0 | < 5.8.12 |
MEDIUM | 5.3 | The Shopping Cart & eCommerce Store plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions… | — | wordfence |
| 5027a662-f27c-4a76-88ac-7b9c2e7401e9 | < 2.0.10 |
MEDIUM | 5.3 | The My Tickets plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on th… | — | wordfence |
| 50259040-a984-42a8-8d58-cc94e349ca45 | < 1.32 |
MEDIUM | 5.3 | The Video Gallery for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missi… | — | wordfence |
| 5008b56f-5cd4-42e5-8d7e-7b1e01b2cbf8 | < 1.9.16.4 |
MEDIUM | 5.3 | The WPS Hide Login plugin for WordPress is vulnerable to Login Page Disclosure in all versions up to, and including, 1.9… | — | wordfence |
| 50070f1f-c639-44a7-bada-577bf88c85db | MEDIUM | 5.3 | The Duitku Payment Gateway plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, a… | — | wordfence | |
| 4ffc741e-9506-40a2-b3d3-48ed5d06bc62 | MEDIUM | 5.3 | The Pay with Contact Form 7 plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, … | — | wordfence | |
| 4fee56b5-dfd8-486c-ae93-91fdbc4687c9 | < 1.3.1 |
MEDIUM | 5.3 | The Fortis for WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to 1.… | — | wordfence |
| 4fe81113-6ed1-48f2-a6d0-db4c19f6df10 | < 3.0.6 |
MEDIUM | 5.3 | The Visual Form Builder WordPress plugin before 3.0.6 does not perform access control on entry form export, allowing una… | — | wordfence |
| 4fe0a08e-eee2-4d48-bb38-dd58bff79118 | < 1.0.4 |
MEDIUM | 5.3 | The Awesome Hotel Booking plugin for WordPress is vulnerable to unauthorized modification of data due to incorrect autho… | — | wordfence |
| 4fc76e1c-546f-4ecd-bd3b-a6f21b2c65bf | < 4.5.4 |
MEDIUM | 5.3 | The BizPrint plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the … | — | wordfence |
| 4fa205d7-61ce-4ab9-b532-fd0b46b0f6a0 | < 3.1.4 |
MEDIUM | 5.3 | The Wp Social Login and Register Social Counter plugin for WordPress is vulnerable to missing authorization in versions … | — | wordfence |
| 4f954b02-b636-438b-a4b1-9b74df153c47 | < 3.2.0 |
MEDIUM | 5.3 | The Comment Edit Core β Simple Comment Editing plugin for WordPress is vulnerable to Sensitive Information Exposure in… | — | wordfence |
| 4f89e8ef-1fcb-470d-9fa2-bbe92b406cd6 | < 2.23.1 |
MEDIUM | 5.3 | The Ezoic plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in v… | — | wordfence |
| 4f76d908-91e7-4933-afab-9a7bfe18e088 | < 2.1.9 |
MEDIUM | 5.3 | The Masteriyo LMS β LMS Course Builder, Quizzes & Certificates plugin for WordPress is vulnerable to unauthorized acce… | — | wordfence |
| 4f76181a-8fb4-4f0e-b84c-0dabc482261d | < 1.9.5 |
MEDIUM | 5.3 | The Arconix FAQ plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability chec… | — | wordfence |
| 4f665145-6556-4f3b-bcfd-28daeec7d496 | < 4.7.6 |
MEDIUM | 5.3 | The WP Helper Premium plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to 4.7.6. This… | — | wordfence |
| 4f64dbf2-b75a-4a35-9b4e-413b8fd1fff0 | < 8.0.2 |
MEDIUM | 5.3 | The LifterLMS β WP LMS for eLearning, Online Courses, & Quizzes plugin for WordPress is vulnerable to Unauthenticated … | — | wordfence |
| 4f555084-2dd5-4c48-ac0e-4e0bb562ac70 | < 7.8.9.3 |
MEDIUM | 5.3 | The Hustle β Email Marketing, Lead Generation, Optins, Popups plugin for WordPress is vulnerable to Sensitive Informat… | — | wordfence |
| 4f4099b3-6c79-42c2-be41-4ad8d73cc2b8 | < 1.7.7 |
MEDIUM | 5.3 | The Product Catalog Simple plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to 1.… | — | wordfence |
| 4f289527-3a89-4db9-887d-fb0980848734 | < 4.9.10 |
MEDIUM | 5.3 | The MC4WP plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'li… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →