πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,402
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 28, 2026
Last Updated

40,402 vulnerabilities found (page 1232 of 1617)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
0e9d5382-d37d-4a40-8f22-e32b8ee98859
< 3.4.0
MEDIUM 5.3 The YouTube Video Gallery by YouTube Showcase – Video Gallery Plugin for WordPress plugin for WordPress is vulnerable … wordfence
0e99531c-8742-4f91-8525-65bb3cb06644
< 2.1.3
MEDIUM 5.3 The Web Application Firewall plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including,… wordfence
0e926467-51f5-4fb4-a9d8-3cb72f212cd6
< 1.3.91
MEDIUM 5.3 The Integrate Google Drive plugin for WordPress is vulnerable to unauthorized access due to a missing capability check o… wordfence
0e65a794-1901-4e54-be4f-9422fe444057
< 3.30
MEDIUM 5.3 The Kalium 3 | Creative WordPress & WooCommerce Theme theme for WordPress is vulnerable to unauthorized email sending du… wordfence
0e62968e-2b0f-4ee6-8ae9-f84d5ff39dba
< 1.0.54
MEDIUM 5.3 The Timetics – Appointment Booking & Scheduling plugin for WordPress is vulnerable to unauthorized access due to a mis… wordfence
0e62203e-b1e3-409c-b07a-3a88bee87e99
< 8.9.1
MEDIUM 5.3 The Mercado Pago payments for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in vers… wordfence
0e52475e-2a04-4973-b419-fb477fe872e5
< 7.4.1
MEDIUM 5.3 The Events Manager – Calendar, Bookings, Tickets, and more! plugin for WordPress is vulnerable to authorization bypass… wordfence
0e4aee28-d0cc-4705-9be6-fe5299f2e0fc
< 2.33.4
MEDIUM 5.3 The IP2Location Country Blocker plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up … wordfence
0e3f8108-6b1b-4720-a450-e58b1833b608
< 3.24
MEDIUM 5.3 The Order Export for WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up… wordfence
0e363267-0b15-46e8-a112-d24dd6b8a22e
< 3.2.5
MEDIUM 5.3 The ShopBuilder – WooCommerce Builder For Elementor plugin for WordPress is vulnerable to Sensitive Information Exposu… wordfence
0e2cf779-2355-461f-a289-11612e15acc6
< 5.7.4
MEDIUM 5.3 The Podlove Web Player plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability che… wordfence
0e23e207-637a-4105-b9cd-ad86591af5d1
< 1.0.2
MEDIUM 5.3 The Content Cloner plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a func… wordfence
0e2268fc-5f29-4c69-9585-81240354ae77
< 4.1.4
MEDIUM 5.3 The User Activity Tracking and Log plugin for WordPress is vulnerable to IP Address Spoofing in all versions up to, and … wordfence
0e1fce43-03c0-4863-bf0c-60a3c510a01d
< 5.8.3
MEDIUM 5.3 The ProfileGrid – User Profiles, Memberships, Groups and Communities plugin for WordPress is vulnerable to group limit… wordfence
0e1300be-07e3-44b6-9ced-a16825274d22
< 2.12.1
MEDIUM 5.3 The Porto Theme - Functionality plugin for WordPress is vulnerable to unauthorized modification of data due to a missing… wordfence
0e1193b1-6e5a-4ecc-ae97-1a3129ad330e
< 4.4.2
MEDIUM 5.3 The APIExperts Square for WooCommerce plugin for WordPress is vulnerable to unauthorized use of functionality due to a m… wordfence
0dfd1e36-1ff5-467c-bafe-fbcade37fe9c
< 3.1.4
MEDIUM 5.3 The JS Help Desk – AI-Powered Support & Ticketing System plugin for WordPress is vulnerable to arbitrary media uploads… wordfence
0def7637-edf4-4ae2-a2e7-31ccb3b52d71
< 5.1.6
MEDIUM 5.3 The User Registration & Membership – Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom… wordfence
0def2dcf-2874-4159-a2e0-e747a1be1b79
< 1.3.94
MEDIUM 5.3 The Integrate Google Drive – Browse, Upload, Download, Embed, Play, Share, Gallery, and Manage Your Google Drive Files… wordfence
0dc59091-8d13-4c07-a158-a46483e49104
< 2.1.2
MEDIUM 5.3 The StoreGrowth – Upsell, BOGO, Quick View, Direct Checkout & Side Cart for WooCommerce plugin for WordPress is vulner… wordfence
0daebb47-a9fb-45c7-8519-54f6fd5faa1c
< 1.6.14
MEDIUM 5.3 The Standard Box Sizes – for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing ca… wordfence
0d9ba01b-09ae-4d35-8bec-30e7673c2a20
< 1.3.1
MEDIUM 5.3 The Ad Invalid Click Protector (AICP) plugin for WordPress is vulnerable to unauthorized access due to a missing capabil… wordfence
0d999ef8-303e-4707-ace8-64563e899651
< 4.3.1
MEDIUM 5.3 The AppPresser plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check… wordfence
0d997e98-dfb6-4f41-8711-7645d2a9435e
< 1.14.14
MEDIUM 5.3 The weMail – Email Marketing, Lead Generation, Optin Forms, Email Newsletters, A/B Testing, and Automation plugin for … wordfence
0d9817ff-ca56-4941-97bc-f26defe7ddd5
< 8.1
MEDIUM 5.3 The Directorist: AI-Powered WordPress Business Directory Plugin with Classified Ads Listings plugin for WordPress is vul… wordfence
← Prev 1229 1230 1231 1232 1233 1234 1235 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top