πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 27, 2026
Last Updated

40,383 vulnerabilities found (page 1212 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
3225f23a-845c-486e-bb9d-268dc1cc7361 MEDIUM 5.3 The quickcab plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function i… wordfence
32207aa7-9298-4c92-98d4-5529b259b381
< 2.2.9
MEDIUM 5.3 The Booking and Rental Manager for Bike | Car | Resort | Appointment | Dress | Equipment plugin for WordPress is vulnera… wordfence
31f13524-2bd7-4157-b378-455ac4f822a1 MEDIUM 5.3 The WordPress Access Control plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to,… wordfence
31d8c5bc-9b16-4d91-bc68-08bdcee612cf
< 1.17.8
MEDIUM 5.3 The Email Marketing, Email Automation, Newsletter & Cart Abandonment for WordPress and WooCommerce – Mail Mint plugin … wordfence
31cc30c7-262d-4582-8976-fc8095bdca5f
< 1.1.2
MEDIUM 5.3 The Square Thumbnails plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on an … wordfence
31a82837-f8da-44bf-81f6-af0d9c9a6e4c
< 1.2.117
MEDIUM 5.3 The PDF Builder for WPForms plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and includ… wordfence
319ff434-aef3-4791-969f-c5de02ba6ad9
< 1.11.1
MEDIUM 5.3 The Custom Order Numbers for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capa… wordfence
318c68f9-2d5a-4871-a829-1b3eac306e90 MEDIUM 5.3 The Hype plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in ve… wordfence
314b8638-15e7-461d-a705-3858fe6813e7
< 3.2.2
MEDIUM 5.3 The ShareThis Dashboard for Google Analytics plugin for WordPress is vulnerable to unauthorized modification of data due… wordfence
31418a45-7dae-4cd4-8f85-0498a285ef6d
< 2.3.7
MEDIUM 5.3 The WP Ultimate Review plugin for WordPress is vulnerable to IP Address Spoofing in all versions up to, and including, 2… wordfence
3121821e-676a-444e-8e5c-c0fff58bc6eb
< 1.2.10
MEDIUM 5.3 The AI for SEO – Bulk Generate Metadata, Alt Text, Image Titles, Captions, Descriptions plugin for WordPress is vulner… wordfence
30f5eecd-3135-45a1-97d2-05fcbbca9e5f
< 1.3.6
MEDIUM 5.3 The Context Blog theme for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includin… wordfence
30df4fb4-d872-4088-af70-64f4ae99609f
< 2.8.1
MEDIUM 5.3 The Wired Impact Volunteer Management plugin for WordPress is vulnerable to unauthorized access due to a missing capabil… wordfence
30c46b91-e371-480f-943a-3906d8b6bbba
< 3.6.2
MEDIUM 5.3 The WP Private Content Plus plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, … wordfence
30834541-acc6-461b-8d0d-66716a7dd947
< 3.0.0
MEDIUM 5.3 The Cool Author Box – For Widget and Post Content plugin for WordPress is vulnerable to unauthorized access due to a m… wordfence
307bfd18-840a-4cb4-86e6-33dc28e5514e
< 7.3.1
MEDIUM 5.3 The Image Regenerate & Select Crop plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up t… wordfence
30747988-83f9-41f9-9bc5-1f533bc4cb94
< 2.3.2
MEDIUM 5.3 The Advanced Country Blocker plugin for WordPress is vulnerable to Authorization Bypass in all versions up to, and inclu… wordfence
307137e1-6ce0-4e7d-8134-6c938b6809cd
< 8.5
MEDIUM 5.3 The WP Visitor Statistics (Real Time Traffic) plugin for WordPress is vulnerable to unauthorized access due to a missing… wordfence
3070de4c-736f-4d65-afe6-37a740ccc3dc
< 4.7.2
MEDIUM 5.3 The Eupago Gateway For Woocommerce plugin for WordPress is vulnerable to unauthorized access in versions up to, and incl… wordfence
30587c31-1c69-479f-8aa4-05c171abaab8
< 7.0.1
MEDIUM 5.3 The Payment Gateway for Redsys & WooCommerce Lite plugin for WordPress is vulnerable to unauthorized access due to a mis… wordfence
303c8539-7a61-4b9b-81a1-70323c0be7ff
< 5.0.4
MEDIUM 5.3 The Post Grid Gutenberg Blocks for News, Magazines, Blog Websites – PostX plugin for WordPress is vulnerable to Sensit… wordfence
30339ff6-b6bf-4c56-b6cd-db0b8a6ce8b6
< 4.2.2
MEDIUM 5.3 The User Registration & Membership – Custom Registration Form, Login Form, and User Profile plugin for WordPress is vu… wordfence
303380f7-d043-48d5-8edb-9d45f13d0d82
< 3.3.3
MEDIUM 5.3 wp-admin/media-upload.php in WordPress before 3.3.3 allows remote attackers to obtain sensitive information or bypass in… wordfence
3006261b-a09e-4cff-b49f-49e992c6fe0b
< 7.9.5
MEDIUM 5.3 The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress i… wordfence
3001829b-f63b-4b99-91a0-53d615ac96c1
< 4.5
MEDIUM 5.3 The SearchIQ plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the … wordfence
← Prev 1209 1210 1211 1212 1213 1214 1215 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top