πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,383
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 27, 2026
Last Updated

40,383 vulnerabilities found (page 1219 of 1616)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
25a8169d-1057-4cf2-9048-fb85f62d6ead
< 1.7.12
MEDIUM 5.3 The 360 Javascript Viewer plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capab… wordfence
2598795e-ea66-4c73-8fcb-6a832f65de52 MEDIUM 5.3 The LionScripts: IP Blocker Lite plugin for WordPress is vulnerable to IP Address Spoofing in all versions up to, and in… wordfence
25922abb-7604-4134-92e8-23a1559f57fb
< 1.5.9
MEDIUM 5.3 The SiteGround Security plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a… wordfence
258c0819-3e7f-4c78-938f-885c4d4c5620
< 2.16.0
MEDIUM 5.3 The Paid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content Restriction plugin for WordPr… wordfence
256fb7f0-174a-4766-afd5-bc61e358da85
< 3.0.1
MEDIUM 5.3 The Advanced Testimonial Carousel for Elementor plugin for WordPress is vulnerable to unauthorized access due to a missi… wordfence
2568018b-29f3-4261-ae0d-658ca9d96846
< 4.1.1
MEDIUM 5.3 The Active Directory Integration / LDAP Integration plugin for WordPress is vulnerable to Sensitive Information Exposure… wordfence
25552fdb-c55b-4390-a614-7c007c5fe7b1
< 1.2.6
MEDIUM 5.3 The Context Blog theme for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.2.5 v… wordfence
252eed6a-2e4f-4840-9c51-87feb1cdc8fd
< 2.7.5
MEDIUM 5.3 The Awesome Event Booking plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on… wordfence
25122475-fc2c-4a8c-90d3-f4a85fb3a8cc
< 1.6.4
MEDIUM 5.3 The Enhanced Text Widget plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabi… wordfence
250b606d-9bc5-4f74-88f8-472d7d9799d3
< 1.2.8
MEDIUM 5.3 The Lawyer Landing Page theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a … wordfence
2505860b-74e5-45c3-852c-3c6fabcb61d1
< 3.5.21
MEDIUM 5.3 The Easy Property Listings plugin for WordPress is vulnerable to unauthorized access due to a missing capability check o… wordfence
24ddc594-e06b-4559-acb0-9a3277579bb1
< 2.1.3
MEDIUM 5.3 The ELEX WooCommerce Dynamic Pricing and Discounts plugin for WordPress is vulnerable to Cross-Site Request Forgery in v… wordfence
24da83d5-b462-4a98-88b9-853af5628f63 MEDIUM 5.3 The Section Widget plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 3.3.1… wordfence
24d95932-c9f2-4ef1-b2c2-2f4ae1226b34
< 7.0.2
MEDIUM 5.3 The Payment Gateway for Redsys & WooCommerce Lite plugin for WordPress is vulnerable to Payment Bypass in all versions u… wordfence
24c4449e-0f20-4c77-a83c-05f547a9d853
< 1.7.2
MEDIUM 5.3 The Vision Interactive plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability che… wordfence
24b87f27-f2de-4e5f-95df-bb5719c9e790
< 6.5.7
MEDIUM 5.3 The Help Scout plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… wordfence
2498c73f-b45d-44db-a67e-d325b758096f MEDIUM 5.3 The TicketBAI Facturas para WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capab… wordfence
24986bbe-6584-4d0a-829c-684c60527482
< 6.0.8.7
MEDIUM 5.3 The RegistrationMagic – User Registration Forms Plugin plugin for WordPress is vulnerable to unauthorized access due t… wordfence
248e8bb0-a9d4-4bc8-90bf-d568f15b7d34
< 5.2.3
MEDIUM 5.3 The User Registration & Membership – Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom… wordfence
247aaa80-344b-43a9-b8f9-d1a7b5af6065
< 1.0.6
MEDIUM 5.3 The Hello Agency theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability chec… wordfence
243d7c43-9aef-44a6-a63a-862ff8881060
< 1.32.2
MEDIUM 5.3 The FiboSearch plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… wordfence
2436ec79-9691-4a1a-a22e-57c5d83b2394
< 3.5.4
MEDIUM 5.3 The Sunshine Photo Cart: Free Client Photo Galleries for Photographers plugin for WordPress is vulnerable to unauthorize… wordfence
24254691-f27c-4f6d-adb0-3b9e0b48b4ac
< 6.20
MEDIUM 5.3 The Ebook Store plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a functio… wordfence
241d75ca-55e3-461a-9844-52e69904da1b
< 2.7.8
MEDIUM 5.3 The Password Protected – Password Protect your WordPress Site, Pages, & WooCommerce Products – Restrict Content, Pro… wordfence
23e04283-5644-4e23-bc42-0a0963a38b71 MEDIUM 5.3 The Piotnet Addons For Elementor Pro plugin for WordPress is vulnerable to unauthorized loss of data due to a missing ca… wordfence
← Prev 1216 1217 1218 1219 1220 1221 1222 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top