πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 27, 2026
Last Updated

40,383 vulnerabilities found (page 1198 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
4b6e1c70-a112-4564-9e18-bdc2a8028482
< 3.26.3
MEDIUM 5.3 The Print My Blog – Print, PDF, & eBook Converter WordPress Plugin plugin for WordPress is vulnerable to unauthorized … wordfence
4b5a3655-067f-4ef1-baf5-2bbc9719a8cd
< 1.4.9.2
MEDIUM 5.3 The Assistant – Every Day Productivity Apps plugin for WordPress is vulnerable to Sensitive Information Exposure in al… wordfence
4b37b57c-4a11-4971-b38f-12c70d71b76b
< 5.2.5.1
MEDIUM 5.3 The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is … wordfence
4b26cf2f-61dc-4fdd-921b-21654f94eac0 MEDIUM 5.3 The Coming Soon Landing Page and Maintenance Mode WordPress Plugin plugin for WordPress is vulnerable to unauthorized ac… wordfence
4b1e4e4c-379f-41d7-a63a-868830c95af9 MEDIUM 5.3 The 1003 Mortgage Application plugin for WordPress is vulnerable to unauthorized access due to a missing capability chec… wordfence
4b170ed1-72ee-40b6-9882-e978d630f6bb
< 4.2.8.0
MEDIUM 5.3 The EventPrime - Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to Sensitive Information Expos… wordfence
4b0d7ee7-a358-4487-a0cc-31ed810ae8bc
< 11.6.7
MEDIUM 5.3 The JNews - WordPress Newspaper Magazine Blog AMP Theme theme for WordPress is vulnerable to unauthorized user registrat… wordfence
4b07ed75-6ee3-4a1a-b165-439a9135b059 MEDIUM 5.3 The Helloprint plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 2.1.2. This… wordfence
4af9895f-2cd2-48b9-820a-3a5e0e28e046 MEDIUM 5.3 The Traveler theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in… wordfence
4ac93cae-8c45-4627-a295-10bd3fc7150a
< 6.32.1
MEDIUM 5.3 The Formidable Forms – WordPress Form Builder for Contact Forms, Calculators, Quizzes & More plugin for WordPress is v… wordfence
4ac44e4f-7052-465c-82ab-c3f23a62c898
< 2.7.8
MEDIUM 5.3 The RSVP and Event Management Plugin WordPress plugin before 2.7.8 does not have any authorisation checks when exporting… wordfence
4ac22e56-5d52-48f0-8bd1-8584c2b40bb7
< 1.6.2
MEDIUM 5.3 The Max Addons Pro for Bricks plugin for WordPress is vulnerable to unauthorized modification of data due to a missing c… wordfence
4ab71d24-0409-421b-8abf-f4d5390a32a1 MEDIUM 5.3 The Authorize.net Payment Gateway For WooCommerce plugin for WordPress is vulnerable to payment bypass in all versions u… wordfence
4a5a8507-4c45-429b-b013-fe9a14a94ffc MEDIUM 5.3 The Track Geolocation Of Users Using Contact Form 7 plugin for WordPress is vulnerable to Sensitive Information Exposure… wordfence
4a5a118d-54a2-4e15-a629-4759c34f62b4
< 3.0.5
MEDIUM 5.3 The Paid Memberships Pro – Content Restriction, User Registration, & Paid Subscriptions plugin for WordPress is vulner… wordfence
4a32ae77-3d4e-4fd4-a43a-7d1a52dcfa77
< 2.7.1
MEDIUM 5.3 The Product Delivery Date for WooCommerce – Lite plugin for WordPress is vulnerable to unauthorized access due to a mi… wordfence
4a2e636d-e602-4ab0-80f2-525a8a1f8388
< 2.2.5
MEDIUM 5.3 The Sharkdropship for AliExpress Dropshipping and Affiliate plugin for WordPress is vulnerable to unauthorized loss of d… wordfence
4a1fe36b-75d2-48c3-bfac-af965eb9363f
< 7.6.11
MEDIUM 5.3 The Comments – wpDiscuz plugin for WordPress is vulnerable to unauthorized modification of data due to insufficient va… wordfence
49ff8aca-7f95-4cab-b031-3fda6d80a23b
< 3.3.6
MEDIUM 5.3 The Kit (formerly ConvertKit) – Email Newsletter, Email Marketing, Membership, Subscribers and Landing Pages plugin fo… wordfence
49ed7d6a-4a65-4efc-90e5-ffa5470d4011
< 2.10.2
MEDIUM 5.3 The Contact Form Builder Plugin: Multi Step Contact Form, Payment Form, Custom Contact Form Plugin by Bit Form plugin fo… wordfence
49ce9dfe-3ff0-4bcb-b85b-ef0daf3e7846
< 1.5.3
MEDIUM 5.3 The FluentCart plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and including, … wordfence
499a43c3-d76e-454a-b882-8e0ff7eaf72d
< 1.5.7
MEDIUM 5.3 The WP Directory Kit plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to 1.5.7. T… wordfence
497760a8-7d4a-45a0-91e4-a8ee27bcdb02
< 2.6.15
MEDIUM 5.3 The WP Project Manager plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabili… wordfence
494c2abb-e675-4e3d-9784-8f70004a97f7
< 10.9.2.1
MEDIUM 5.3 The Thrive Themes – Product Manager plugin for WordPress is vulnerable to unauthorized access due to a missing capabil… wordfence
4927c060-f2b2-4916-b049-1442bba63e98
< 5.1.6
MEDIUM 5.3 The Rede ItaΓΊ for WooCommerce β€” Payment PIX, Credit Card and Debit plugin for WordPress is vulnerable to unauthorized… wordfence
← Prev 1195 1196 1197 1198 1199 1200 1201 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top