Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,383 vulnerabilities found (page 1223 of 1616)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| 1ec5edef-cd51-4321-91bb-d1bfce58cd45 | < 7.11.3 |
MEDIUM | 5.3 | The Booster for WooCommerce β PDF Invoices, Abandoned Cart, Variation Swatches & 100+ Tools plugin for WordPress is vu… | — | wordfence |
| 1eade2ed-9a75-4857-a2c5-a21e016e7029 | < 5.2.64 |
MEDIUM | 5.3 | The Calculated Fields Form plugin for WordPress is vulnerable to Denial of Service in all versions up to, and including,… | — | wordfence |
| 1ead46fd-5744-4fbb-9efd-980f9216abbc | < 2024.0428 |
MEDIUM | 5.3 | The FeedWordPress plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and incl… | — | wordfence |
| 1e9a1484-2000-47fa-9890-fa02eddabcd9 | < 5.5.1 |
MEDIUM | 5.3 | The BackWPup β WordPress Backup & Restore Plugin plugin for WordPress is vulnerable to unauthorized access of data due… | — | wordfence |
| 1e98b763-29b9-435d-a436-d4df64234b4d | < 2.2.5 |
MEDIUM | 5.3 | The BlossomThemes Email Newsletter plugin for WordPress is vulnerable to unauthorized access of data due to a missing ca… | — | wordfence |
| 1e6327b0-a047-4f8c-8e95-88f2e4b7089f | < 2.4.33 |
MEDIUM | 5.3 | The Better Messages β Live Chat for WordPress, BuddyPress, PeepSo, Ultimate Member, BuddyBoss plugin for WordPress is … | — | wordfence |
| 1e3110ae-5e82-4176-bf9d-6c56b13f9c27 | < 3.8.3 |
MEDIUM | 5.3 | The ShortPixel Adaptive Images plugin for WordPress is vulnerable to unauthorized modification of data due to a missing … | — | wordfence |
| 1e2b99ac-62f4-4180-aabe-91a5c717ea71 | < 4.3.8 |
MEDIUM | 5.3 | The User Frontend: AI Powered Frontend Posting, User Directory, Profile Builder, Membership & User Registration plugin f… | — | wordfence |
| 1e1badce-2245-4680-9f59-d67fae468ba0 | < 1.18.10 |
MEDIUM | 5.3 | The Re Gallery β Responsive Photo Gallery plugin for WordPress is vulnerable to unauthorized access due to a missing c… | — | wordfence |
| 1e177e54-1a17-49d3-85b5-e4c6bf154320 | < 6.5.0.6 |
MEDIUM | 5.3 | The Quiz Maker plugin for WordPress is vulnerable to denial of service in all versions up to, and including, 6.5.0.5. Th… | — | wordfence |
| 1df16802-c102-4ff2-b8ff-8a588905d3f7 | < 4.24.2 |
MEDIUM | 5.3 | The Sensei LMS β Online Courses, Quizzes, & Learning plugin for WordPress is vulnerable to Information Exposure in all… | — | wordfence |
| 1de10a71-3b73-451e-ad24-2038b37a52f8 | < 1.1.5 |
MEDIUM | 5.3 | The ShipTime: Discounted Shipping Rates plugin for WordPress is vulnerable to unauthorized access due to a missing capab… | — | wordfence |
| 1dcf68fd-e9d3-4a46-8bd4-15c2598b91fe | < 6.0.8.7 |
MEDIUM | 5.3 | The RegistrationMagic β Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is … | — | wordfence |
| 1daaab1a-ce0e-461d-940e-27b5b3f60e32 | < 1.3.45 |
MEDIUM | 5.3 | The Contact Form Email plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and i… | — | wordfence |
| 1da53718-c2a2-45d0-ad43-daff3c68342d | MEDIUM | 5.3 | The Word Replacer Pro plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit… | — | wordfence | |
| 1d8f6965-1fe3-4f24-bd6b-9026e91bc5db | < 1.3.6 |
MEDIUM | 5.3 | The Chained Quiz plugin for WordPress is vulnerable to Insecure Direct Object Reference in version 1.3.4 and below via t… | — | wordfence |
| 1d78b823-fdff-41b2-8059-6564e3eb668d | < 3.9.9.5.1 |
MEDIUM | 5.3 | The Eventer plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the '… | — | wordfence |
| 1d6f8410-538a-4d9c-89aa-5f57724d7d5f | < 2.4.3.1 |
MEDIUM | 5.3 | The JetBlog for Elementor plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on… | — | wordfence |
| 1d5f9fc7-fc85-4326-9295-470e8208c35a | MEDIUM | 5.3 | The Solid Affiliate plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and incl… | — | wordfence | |
| 1d2ebbc4-dc8b-47e5-b8d9-758424de4426 | < 2.3.0 |
MEDIUM | 5.3 | The WP 2FA plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 2.2.1 … | — | wordfence |
| 1d2a2032-3d39-4195-8e6c-ab884164721a | < 3.6.4.2 |
MEDIUM | 5.3 | The FunnelKit Automations β Email Marketing Automation and CRM for WordPress & WooCommerce plugin for WordPress is vul… | — | wordfence |
| 1cfe6f79-d5af-4f63-9f6a-39ae34f150e8 | MEDIUM | 5.3 | The Make My Trivia plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a func… | — | wordfence | |
| 1cee38cd-b36b-4e3e-bfc6-3c6de18fda33 | MEDIUM | 5.3 | The StaffList plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including,… | — | wordfence | |
| 1ce1316b-674a-4436-968f-9ffca4e8f726 | < 5.16.2 |
MEDIUM | 5.3 | The Abandoned Cart Lite for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions… | — | wordfence |
| 1cdfbc7a-e3c2-44c1-af83-b2b78be01e5e | < 2.0.4 |
MEDIUM | 5.3 | The Tag Groups is the Advanced Way to Display Your Taxonomy Terms plugin for WordPress is vulnerable to unauthorized acc… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →