Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1203 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| 41d55e84-773d-4ec9-8dca-b93b8dac4f48 | < 2.8.0 |
MEDIUM | 5.3 | The HTML5 MP3 Player with Playlist Free plugin for WordPress is vulnerable to full path disclosure in versions up to, an… | — | wordfence |
| 41d41850-d48e-44d5-a1c0-e1b001dabf18 | MEDIUM | 5.3 | The JobBank plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in… | — | wordfence | |
| 41d018a9-cf88-49db-ac86-e838c58c4a2c | < 4.0.0 |
MEDIUM | 5.3 | The ProveSource Social Proof plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to,… | — | wordfence |
| 41ad41dc-fdc9-4060-b4b2-c3c17acbd7ee | < 3.4.3 |
MEDIUM | 5.3 | The Advanced Classifieds & Directory Pro plugin for WordPress is vulnerable to Sensitive Information Exposure in version… | — | wordfence |
| 41aa5b3d-4ffd-4251-965a-a5131e925a54 | < 24.0712 |
MEDIUM | 5.3 | The ReDi Restaurant Reservation plugin for WordPress is vulnerable to unauthorized modification of data due to a missing… | — | wordfence |
| 41a2d4db-3032-476f-91d0-c4b6dcbc61e7 | MEDIUM | 5.3 | The MultiVendorX β WooCommerce Multivendor Marketplace AI Powered Solutions plugin for WordPress is vulnerable to unau… | — | wordfence | |
| 41a1ea51-8159-4833-bec9-77b57c74c3e7 | < 1.6.3 |
MEDIUM | 5.3 | The fluXtore Funnel Builder for WordPress β Earn More with Highly Converting Sales Funnels plugin for WordPress is vul… | — | wordfence |
| 4198bbb2-3aff-492e-a781-b0c9477baf6c | MEDIUM | 5.3 | The Hide Links plugin for WordPress is vulnerable to unauthorized shortcode execution due to do_shortcode being hooked t… | — | wordfence | |
| 415c2648-4fcb-4226-baac-9e75db79bfdf | < 2.3.5 |
MEDIUM | 5.3 | The Paid Memberships Pro β Mailchimp Add On plugin for WordPress is vulnerable to Sensitive Information Exposure in al… | — | wordfence |
| 4158f6ff-8e0f-4531-8c94-f59220d6fea6 | < 2.5.2 |
MEDIUM | 5.3 | The WooODT Lite β Delivery & pickup date time location for WooCommerce plugin for WordPress is vulnerable to Full Path… | — | wordfence |
| 4149ee26-86c0-408b-a8e1-976c7fbf6e81 | < 1.2.1 |
MEDIUM | 5.3 | The Wheel of Life: Coaching and Assessment Tool for Life Coach plugin for WordPress is vulnerable to unauthorized access… | — | wordfence |
| 413d1e3d-373f-4275-a8f8-910c33a32f4f | < 1.7.3 |
MEDIUM | 5.3 | The WooCommerce Wishlist (High customization, fast setup,Free Elementor Wishlist, most features) plugin for WordPress is… | — | wordfence |
| 412d5fa7-08fc-402a-bcac-b2dff87de861 | < 1.2.3 |
MEDIUM | 5.3 | The SureForms β Drag and Drop Form Builder for WordPress plugin for WordPress is vulnerable to Information Exposure in… | — | wordfence |
| 41299927-2ed9-4cbe-b2b0-f306dc0e4a58 | < 1.9.0 |
MEDIUM | 5.3 | The PPWP β Password Protect Pages plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions… | — | wordfence |
| 41212533-535e-4a9e-a9b8-1240021a3752 | < 5.1.4 |
MEDIUM | 5.3 | The WordPress Simple Shopping Cart plugin for WordPress is vulnerable to Insecure Direct Object Reference in all version… | — | wordfence |
| 411b7889-c2c6-48cb-967d-091585705e17 | < 1.1.4.1 |
MEDIUM | 5.3 | The BEAR plugin for WordPress is vulnerable to unauthorized access due to missing capability checks on several functions… | — | wordfence |
| 41114d2a-80a9-4f01-bd1f-0b0c9efd4a6d | < 5.0.14 |
MEDIUM | 5.3 | The Team plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in ve… | — | wordfence |
| 40f3a0c3-b1b1-4827-b74c-6b2470ae82fb | MEDIUM | 5.3 | The Slider Templates plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fu… | — | wordfence | |
| 40eaea45-6ba2-469d-b74f-561319c09596 | < 3.2.17 |
MEDIUM | 5.3 | The Ultimate Reviews plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and i… | — | wordfence |
| 40e69590-0423-4445-9fa0-c3841da793f5 | MEDIUM | 5.3 | The Dashboard Welcome for Beaver Builder plugin for WordPress is vulnerable to unauthorized access due to a missing capa… | — | wordfence | |
| 40d6a34b-cad5-4908-b57e-be1138531172 | < 1.0.3 |
MEDIUM | 5.3 | The Custom Login URL plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability… | — | wordfence |
| 40ceea17-ec60-4775-8495-e2f7643d1b7c | < 1.3.1 |
MEDIUM | 5.3 | The ilGhera Support System for WooCommerce plugin for WordPress is vulnerable to unauthorized access of data due to a mi… | — | wordfence |
| 40cb3214-a11b-4bee-9422-256d12303460 | MEDIUM | 5.3 | The Claudio Sanches β Checkout Cielo for WooCommerce plugin for WordPress is vulnerable to unauthorized modification o… | — | wordfence | |
| 40ade684-57a2-43be-9d4a-1c0a653807eb | < 1.2.4 |
MEDIUM | 5.3 | The Support Genix plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several… | — | wordfence |
| 40a99a75-88aa-40f9-9fe9-a65118dd3464 | < 2.4 |
MEDIUM | 5.3 | The Ultimate Member Widgets for Elementor β WordPress User Directory plugin for WordPress is vulnerable to Sensitive I… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →