πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 27, 2026
Last Updated

40,383 vulnerabilities found (page 1210 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
3666a841-711d-4ecf-bb77-f2db4d5817ea
< 1.0.6
MEDIUM 5.3 The ActivityPub plugin for WordPress is vulnerable to unauthorized access of data due to a unsufficient authorization ch… wordfence
3623f84d-bc43-45de-ae4e-490279594143
< 3.6
MEDIUM 5.3 The WordPress Simple HTML Sitemap plugin for WordPress is vulnerable to unauthorized access due to a missing capability … wordfence
3622f58c-6c28-4c47-a5d5-a7274cfa69a9
< 5.1.3
MEDIUM 5.3 The WordPress Internal Link Optimiser plugin for WordPress is vulnerable to unauthorized modification of data due to a m… wordfence
360b1927-a863-46be-ad11-3f6251c75a3c
< 6.5.27
MEDIUM 5.3 The YOP Poll plugin for WordPress is vulnerable to a race condition in all versions up to, and including, 6.5.26. This i… wordfence
35df1ab9-58c1-4270-96ef-bbb2c7ac7af6
< 1.13
MEDIUM 5.3 The BestWebSoft Google Captcha (aka reCAPTCHA) plugin before 1.13 for WordPress allows remote attackers to bypass the CA… wordfence
35d84ccf-e17f-4c31-9a86-f36d082f95c0 MEDIUM 5.3 The TailPress – Tailwind for WordPress plugin for WordPress is vulnerable to Sensitive Information Exposure in all ver… wordfence
358a5807-dbe5-4078-aaf3-3edf61c69bba
< 4.4.6
MEDIUM 5.3 The AWP Classifieds plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… wordfence
357bf5c3-6c9a-4478-b9d0-9f1beaaf5d00
< 2.9.4.3
MEDIUM 5.3 The myCred – Points Management System For Gamification, Ranks, Badges, and Loyalty Rewards Program. plugin for WordPre… wordfence
355d8d4a-2488-4da5-b48f-4f8be6b59170
< 4.1.20
MEDIUM 5.3 The Eventin – Event Calendar, Tickets, Registration, Booking & WooCommerce plugin for WordPress is vulnerable to user … wordfence
3535fad2-9b2d-4721-9e5d-cfe609df00ae MEDIUM 5.3 The Albo Pretorio On line plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, an… wordfence
352a0c8a-22a6-44d9-917c-5fb37569d143
< 4.1.3
MEDIUM 5.3 The All In One WP Security & Firewall for WordPress is vulnerable to Captcha Bypass via multiple routes, allowing automa… wordfence
3512ce8f-b7a6-4a6f-a141-bca08c183882
< 3.6.1
MEDIUM 5.3 The Resido - Real Estate WordPress Theme theme for WordPress is vulnerable to unauthorized access due to a missing capab… wordfence
3511a3d3-1e6e-41ba-a8b9-67f8f7eef157
< 1.6
MEDIUM 5.3 The Rating by BestWebSoft WordPress plugin through 1.5 does not validate the submitted rating, allowing submission of lo… wordfence
34fcc835-593f-435b-ad00-07ca0cb649fa
< 8.3.15
MEDIUM 5.3 The WP VR – 360 Panorama and Virtual Tour Builder For WordPress plugin for WordPress is vulnerable to unauthorized acc… wordfence
34be34be-ef6d-4e66-a135-569e973df851
< 1.4.8
MEDIUM 5.3 The VW Pet Shop theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… wordfence
34a36da0-a101-4c5a-bacb-9f131bded819 MEDIUM 5.3 The Reveal Template plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 3.7… wordfence
3486ad83-f784-4ffd-bf26-f00c735f3a58
< 6.0.0.0
MEDIUM 5.3 The ProfileGrid plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a functio… wordfence
3479e7a4-7719-4438-8bf5-bf9b9990f3f4
< 6.1.0.0
MEDIUM 5.3 The Community by PeepSo plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and incl… wordfence
345e58d2-208e-4e1d-b4e9-682cb5c30e15
< 3.0.14
MEDIUM 5.3 The AutoNetTV Relay plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.0… wordfence
345d0ffd-5cb1-460a-827d-104dde1d94cd
< 1.7.1063
MEDIUM 5.3 The Royal Addons for Elementor – Addons and Templates Kit for Elementor plugin for WordPress is vulnerable to Sensitiv… wordfence
345097c7-8f0e-46ed-9a1d-7c8a4a589e3f
< 4.8.1
MEDIUM 5.3 The Poll Maker plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on an unknown… wordfence
343cbdda-2ec5-437f-b563-96c61663314d
< 1.23.1
MEDIUM 5.3 The Updraft Plus plugin for WordPress is vulnerable to information disclosure in versions up to, and including, 1.22.24.… wordfence
340bb7bd-5764-4860-8263-1163786425fc
< 1.1.23
MEDIUM 5.3 The Appointment Booking Calendar Plugin and Scheduling Plugin – BookingPress plugin for WordPress is vulnerable to una… wordfence
3408895e-3418-4f70-8b7c-76f6ba899d11
< 8.2.6
MEDIUM 5.3 The WoodMart plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 8.2.5 via … wordfence
3405974d-cf0a-4fef-9693-5d81833f42d6
< 1.8.0
MEDIUM 5.3 The g-FFL Cockpit plugin for WordPress is vulnerable to unauthorized modification of data due to IP-based authorization … wordfence
← Prev 1207 1208 1209 1210 1211 1212 1213 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top