πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 27, 2026
Last Updated

40,383 vulnerabilities found (page 1203 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
41d55e84-773d-4ec9-8dca-b93b8dac4f48
< 2.8.0
MEDIUM 5.3 The HTML5 MP3 Player with Playlist Free plugin for WordPress is vulnerable to full path disclosure in versions up to, an… wordfence
41d41850-d48e-44d5-a1c0-e1b001dabf18 MEDIUM 5.3 The JobBank plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in… wordfence
41d018a9-cf88-49db-ac86-e838c58c4a2c
< 4.0.0
MEDIUM 5.3 The ProveSource Social Proof plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to,… wordfence
41ad41dc-fdc9-4060-b4b2-c3c17acbd7ee
< 3.4.3
MEDIUM 5.3 The Advanced Classifieds & Directory Pro plugin for WordPress is vulnerable to Sensitive Information Exposure in version… wordfence
41aa5b3d-4ffd-4251-965a-a5131e925a54
< 24.0712
MEDIUM 5.3 The ReDi Restaurant Reservation plugin for WordPress is vulnerable to unauthorized modification of data due to a missing… wordfence
41a2d4db-3032-476f-91d0-c4b6dcbc61e7 MEDIUM 5.3 The MultiVendorX – WooCommerce Multivendor Marketplace AI Powered Solutions plugin for WordPress is vulnerable to unau… wordfence
41a1ea51-8159-4833-bec9-77b57c74c3e7
< 1.6.3
MEDIUM 5.3 The fluXtore Funnel Builder for WordPress – Earn More with Highly Converting Sales Funnels plugin for WordPress is vul… wordfence
4198bbb2-3aff-492e-a781-b0c9477baf6c MEDIUM 5.3 The Hide Links plugin for WordPress is vulnerable to unauthorized shortcode execution due to do_shortcode being hooked t… wordfence
415c2648-4fcb-4226-baac-9e75db79bfdf
< 2.3.5
MEDIUM 5.3 The Paid Memberships Pro – Mailchimp Add On plugin for WordPress is vulnerable to Sensitive Information Exposure in al… wordfence
4158f6ff-8e0f-4531-8c94-f59220d6fea6
< 2.5.2
MEDIUM 5.3 The WooODT Lite – Delivery & pickup date time location for WooCommerce plugin for WordPress is vulnerable to Full Path… wordfence
4149ee26-86c0-408b-a8e1-976c7fbf6e81
< 1.2.1
MEDIUM 5.3 The Wheel of Life: Coaching and Assessment Tool for Life Coach plugin for WordPress is vulnerable to unauthorized access… wordfence
413d1e3d-373f-4275-a8f8-910c33a32f4f
< 1.7.3
MEDIUM 5.3 The WooCommerce Wishlist (High customization, fast setup,Free Elementor Wishlist, most features) plugin for WordPress is… wordfence
412d5fa7-08fc-402a-bcac-b2dff87de861
< 1.2.3
MEDIUM 5.3 The SureForms – Drag and Drop Form Builder for WordPress plugin for WordPress is vulnerable to Information Exposure in… wordfence
41299927-2ed9-4cbe-b2b0-f306dc0e4a58
< 1.9.0
MEDIUM 5.3 The PPWP – Password Protect Pages plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions… wordfence
41212533-535e-4a9e-a9b8-1240021a3752
< 5.1.4
MEDIUM 5.3 The WordPress Simple Shopping Cart plugin for WordPress is vulnerable to Insecure Direct Object Reference in all version… wordfence
411b7889-c2c6-48cb-967d-091585705e17
< 1.1.4.1
MEDIUM 5.3 The BEAR plugin for WordPress is vulnerable to unauthorized access due to missing capability checks on several functions… wordfence
41114d2a-80a9-4f01-bd1f-0b0c9efd4a6d
< 5.0.14
MEDIUM 5.3 The Team plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in ve… wordfence
40f3a0c3-b1b1-4827-b74c-6b2470ae82fb MEDIUM 5.3 The Slider Templates plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fu… wordfence
40eaea45-6ba2-469d-b74f-561319c09596
< 3.2.17
MEDIUM 5.3 The Ultimate Reviews plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and i… wordfence
40e69590-0423-4445-9fa0-c3841da793f5 MEDIUM 5.3 The Dashboard Welcome for Beaver Builder plugin for WordPress is vulnerable to unauthorized access due to a missing capa… wordfence
40d6a34b-cad5-4908-b57e-be1138531172
< 1.0.3
MEDIUM 5.3 The Custom Login URL plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability… wordfence
40ceea17-ec60-4775-8495-e2f7643d1b7c
< 1.3.1
MEDIUM 5.3 The ilGhera Support System for WooCommerce plugin for WordPress is vulnerable to unauthorized access of data due to a mi… wordfence
40cb3214-a11b-4bee-9422-256d12303460 MEDIUM 5.3 The Claudio Sanches – Checkout Cielo for WooCommerce plugin for WordPress is vulnerable to unauthorized modification o… wordfence
40ade684-57a2-43be-9d4a-1c0a653807eb
< 1.2.4
MEDIUM 5.3 The Support Genix plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several… wordfence
40a99a75-88aa-40f9-9fe9-a65118dd3464
< 2.4
MEDIUM 5.3 The Ultimate Member Widgets for Elementor – WordPress User Directory plugin for WordPress is vulnerable to Sensitive I… wordfence
← Prev 1200 1201 1202 1203 1204 1205 1206 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top