πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,402
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 28, 2026
Last Updated

40,402 vulnerabilities found (page 1231 of 1617)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
10d10207-b1ba-48d2-8cd6-74bf0a186bde
< 8.6.13
MEDIUM 5.3 The MapSVG plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in … wordfence
107548a1-3b5b-4838-815b-32b86e1b7ff5 MEDIUM 5.3 The Linkify Text plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 1.9.1.… wordfence
107031b3-5071-490a-a8f7-060212b1724c
< 2.8.2
MEDIUM 5.3 The Shelf Planner plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability ch… wordfence
1069c845-30b9-4aca-8a60-8b66c48365af MEDIUM 5.3 The Add Admin JavaScript plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including… wordfence
1063ce43-ca4f-41c0-b094-0d07dbd3bdd0
< 3.0.0
MEDIUM 5.3 The GA4WP: Google Analytics for WordPress plugin for WordPress is vulnerable to unauthorized access due to a missing cap… wordfence
10029296-1cb8-47dd-a0f0-833a906e72b5
< 2.9.5.4
MEDIUM 5.3 The WPComplete plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the delete… wordfence
0fe77926-8a43-42ce-9d3d-3aac2334dcbd
< 11.1.5.1
MEDIUM 5.3 The PixelYourSite plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includ… wordfence
0fdf116a-9b12-4fc6-985b-b4868dd6848e
< 5.4.4
MEDIUM 5.3 The KLEO - Community Focused & Multi-Purpose BuddyPress WordPress Theme theme for WordPress is vulnerable to unauthorize… wordfence
0fcdd6b5-a273-4916-a894-a753be0a7921
< 1.1.16
MEDIUM 5.3 The WordPress plugin Be POPIA Compliant exposed sensitive information to unauthenticated users consisting of site visito… wordfence
0fc7e35d-ca94-4a69-8a8d-6f358203863c MEDIUM 5.3 The WP Social Avatar plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fu… wordfence
0fc1e642-3eb8-426b-8d9b-66770aa8bbe4 MEDIUM 5.3 The Ni WooCommerce Product Enquiry plugin for WordPress is vulnerable to unauthorized access due to a missing capability… wordfence
0fa7e6f6-92b2-494b-8c7a-76ba8213b610
< 1.26
MEDIUM 5.3 The Advanced Google reCAPTCHA plugin for WordPress is vulnerable to IP unblocking in all versions up to, and including, … wordfence
0f8cc16d-4e42-47b0-8ba0-df3252071826
< 9.3.9
MEDIUM 5.3 The XStore theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in v… wordfence
0f84599a-3fd4-4a09-9df3-a8d41cf1da2d MEDIUM 5.3 The Question Answer plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… wordfence
0f6ad375-da04-4b56-8077-e26c148e7527
< 3.2.11
MEDIUM 5.3 The Members – Membership & User Role Editor Plugin plugin for WordPress is vulnerable to Sensitive Information Exposur… wordfence
0f64cbff-96a2-45e6-b37a-a7d4702fdf09 MEDIUM 5.3 The AdFoxly – Ad Manager, AdSense Ads & Ads.txt plugin for WordPress is vulnerable to unauthorized modification of dat… wordfence
0f522dfe-f2c2-4adb-980c-1f03d3c26e12
< 1.4.4
MEDIUM 5.3 The Event Monster – Event Management, Tickets Booking, Upcoming Event plugin for WordPress is vulnerable to Informatio… wordfence
0f38e5f0-6c62-4c0a-99f9-09bc20ee87d4
< 6.6.10
MEDIUM 5.3 The Essential Addons for Elementor – Popular Elementor Templates & Widgets plugin for WordPress is vulnerable to unaut… wordfence
0f379d56-c4d6-4a87-82b5-ca9a62a9b319 MEDIUM 5.3 The NewPath WildApricotPress Add-on – Member Directory plugin for WordPress is vulnerable to Sensitive Information Exp… wordfence
0f2968d6-f1b1-4cd5-b76b-9dc0f6dd1a6a
< 6.15.3
MEDIUM 5.3 The The Events Calendar plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including,… wordfence
0f21d7a2-3b4f-487f-a64a-b963427233b3
< 7.0.3
MEDIUM 5.3 The Eyewear prescription form plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and inc… wordfence
0efc41ea-701d-44ce-9fec-b4d1459f63b1
< 1.0.19
MEDIUM 5.3 The Optinly – Exit Intent, Newsletter Popups, Gamification & Opt-in Forms plugin for WordPress is vulnerable to unauth… wordfence
0eedb898-406a-4dcc-b61f-cc1d6be9aa20 MEDIUM 5.3 The WooCommerce Order Details plugin for WordPress is vulnerable to unauthorized access due to a missing capability chec… wordfence
0eb94259-5f24-49dd-bf4b-0c1dd996d9d4
< 1.6.9.17
MEDIUM 5.3 The Appointment Booking Calendar β€” Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable to u… wordfence
0eb8e3b7-20ef-46dc-9519-8176f9ccd459 MEDIUM 5.3 The WP Attractive Donations System - Easy Stripe & Paypal donations plugin for WordPress is vulnerable to unauthorized a… wordfence
← Prev 1228 1229 1230 1231 1232 1233 1234 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top