Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1215 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| 2c889c8e-7546-45bd-884b-7fb0199e595b | < 4.52 |
MEDIUM | 5.3 | The Hide My WP plugin for WordPress is vulnerable to Cross-Site Scripting in versions up to, and including, 4.51.1 due t… | — | wordfence |
| 2c8734f5-4d23-454d-bf00-6e9d36982098 | < 4.0.28 |
MEDIUM | 5.3 | The ARMember plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 4.0.27 via … | — | wordfence |
| 2c80de83-3996-4048-8aa3-3611b002fc01 | < 1.0.72 |
MEDIUM | 5.3 | The Polls CP plugin for WordPress is vulnerable to Poll Limit Bypass in all versions up to, and including, 1.0.71. This … | — | wordfence |
| 2c77fde2-0802-4421-93d7-697771d375ec | < 4.1.8 |
MEDIUM | 5.3 | The WooEvents plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function … | — | wordfence |
| 2c66b185-fd4b-452d-890b-0f1850d8a7be | < 2.0.3 |
MEDIUM | 5.3 | The Advanced Contact form 7 DB plugin for WordPress is vulnerable to unauthorized access of data due to a missing capabi… | — | wordfence |
| 2c66905d-6e53-4062-b63f-b9a249ebd3e1 | < 4.3.0 |
MEDIUM | 5.3 | The Event Manager and Tickets Selling Plugin for WooCommerce β WpEvently β WordPress Plugin plugin for WordPress is … | — | wordfence |
| 2c399c6a-d5e4-4b88-a0a9-003233d5d59f | < 5.2.4 |
MEDIUM | 5.3 | The Analytify β Google Analytics Dashboard For WordPress (GA4 analytics made easy) plugin for WordPress is vulnerable … | — | wordfence |
| 2c1c208e-ae4a-40fb-9495-5268e5e929e5 | < 2.3.1 |
MEDIUM | 5.3 | The woocommerce-wholesale-pricing plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions u… | — | wordfence |
| 2c08846c-23e2-43c5-9cb2-3c798832e960 | < 3.1.4 |
MEDIUM | 5.3 | The Chat Help β Click to Chat Button & Form plugin for WordPress is vulnerable to unauthorized access due to a missing… | — | wordfence |
| 2bf114d2-6617-4681-b363-7dafb2308887 | < 1.8.5 |
MEDIUM | 5.3 | The WOW Styler for CF7 β Visual Styler for Contact Form 7 Forms plugin for WordPress is vulnerable to unauthorized acc… | — | wordfence |
| 2be9815d-56c6-4574-9b4c-75fff40a148d | < 0.3.0 |
MEDIUM | 5.3 | The createComment mutation in WPGraphQL up to version 0.2.3 for WordPress allows unauthenticated users to post comments … | — | wordfence |
| 2be2e028-81b8-4fd9-8197-eccf391fee65 | < 12.8.4 |
MEDIUM | 5.3 | The Greenshift β animation and page builder blocks plugin for WordPress is vulnerable to Sensitive Information Exposur… | — | wordfence |
| 2bbfbbd4-9055-4ede-8a51-d49e000aa4f9 | < 1.7.1053 |
MEDIUM | 5.3 | The Royal Addons for Elementor β Addons and Templates Kit for Elementor plugin for WordPress is vulnerable to unauthor… | — | wordfence |
| 2bbc1a85-013c-4a61-86a8-54b823ffdfb1 | < 9.5.10.1 |
MEDIUM | 5.3 | The Really Simple Security β Simple and Performant Security (formerly Really Simple SSL) plugin for WordPress is vulne… | — | wordfence |
| 2bad2c75-c111-45e9-ad8c-c8f3af0e3154 | < 5.29.1 |
MEDIUM | 5.3 | The Event Tickets and Registration plugin for WordPress is vulnerable to unauthorized access due to a missing capability… | — | wordfence |
| 2b73d48a-1f10-4e47-a18f-82a3103b72bd | < 1.1.7 |
MEDIUM | 5.3 | The Document Library Lite plugin for WordPress is vulnerable to Improper Authorization in all versions up to, and includ… | — | wordfence |
| 2b7220a4-7178-42f7-978b-96eae777b134 | < 7.3.15.727 |
MEDIUM | 5.3 | The FV Flowplayer Video Player plugin for WordPress is vulnerable to sensitive data exposure in versions up to, and incl… | — | wordfence |
| 2b4cc8f5-f95c-4ab7-aee9-cbdc06cc3e9a | MEDIUM | 5.3 | The Easy Forms for Mailchimp plugin for WordPress is vulnerable to unauthorized access due to a missing capability check… | — | wordfence | |
| 2b47c50c-ef86-4ecf-be6e-21ceb41da723 | MEDIUM | 5.3 | The Front End Users plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and incl… | — | wordfence | |
| 2b409d63-a2e2-4304-90f2-dfa11db54be1 | < 7.1.0.31 |
MEDIUM | 5.3 | The Xagio SEO β AI Powered SEO plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and i… | — | wordfence |
| 2b2c2d52-7d76-4b7a-98e5-d3843720954a | < 1.5.4 |
MEDIUM | 5.3 | The Barcode Scanner with Inventory & Order Manager plugin for WordPress is vulnerable to unauthorized access due to a mi… | — | wordfence |
| 2b28ddeb-44f5-4d19-b866-94fc2088ee6d | < 1.49.2 |
MEDIUM | 5.3 | The Forminator Forms β Contact Form, Payment Form & Custom Form Builder plugin for WordPress is vulnerable to authoriz… | — | wordfence |
| 2b1f8594-65fa-409c-b014-7de837ac45bf | MEDIUM | 5.3 | The WP Sort Order plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a funct… | — | wordfence | |
| 2b0d0c44-0ee8-400b-a4ea-e5520c2a6710 | < 2.6.7 |
MEDIUM | 5.3 | The Ultimate Gift Cards for WooCommerce β Create, Redeem & Manage Digital Gift Certificates with Personalized Template… | — | wordfence |
| 2b060b83-3534-4ddc-8c14-8bca0f451910 | < 0.19 |
MEDIUM | 5.3 | The Theater for WordPress plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →