ðŸ›¡ï¸ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,402
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 28, 2026
Last Updated

40,402 vulnerabilities found (page 1233 of 1617)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
0d7b3f2a-0a82-4cd4-96a9-2b1257d7b13c
< 1.8.0
MEDIUM 5.3 The StreamWeasels Twitch Integration plugin for WordPress is vulnerable to Sensitive Information Exposure in all version… wordfence
0d6af3cd-1a92-428f-a51c-f01a3ba6ebae
< 4.2.1
MEDIUM 5.3 The Enfold Theme for WordPress is vulnerable the information exposure in versions up to, and including, 4.2. wordfence
0d6adf41-6cb1-4c11-940d-fabc9298f3af
< 1.1.3
MEDIUM 5.3 The RomethemeForm For Elementor plugin for WordPress is vulnerable to unauthorized access due to a missing capability ch… wordfence
0d5e4dae-7964-4b24-bab2-db523de5f1f4
< 3.3.100
MEDIUM 5.3 The Zephyr Project Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, a… wordfence
0d547ba1-bfe5-4dce-a02e-90d865ebea86 MEDIUM 5.3 The Online Contact Widget-多åˆä¸€åœ¨çº¿å®¢æœæ’ä»¶ plugin for WordPress is vulnerable to unauthorized access in all v… wordfence
0d041b14-0d05-4bfe-bd5c-7e06d7b108b8
< 5.2.3.1
MEDIUM 5.3 The RegistrationMagic plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit… wordfence
0cfd7098-05c9-45c3-95eb-613894867743
< 2.1.2
MEDIUM 5.3 The BackupBliss – Backup & Migration with Free Cloud Storage plugin for WordPress is vulnerable to Sensitive Informati… wordfence
0ce738ee-bbb6-462a-aeae-0523200e320f
< 3.9.12
MEDIUM 5.3 The EmbedPress plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the delete… wordfence
0cc2261a-889e-40ec-8382-48de65b91b34
< 5.18.1.1
MEDIUM 5.3 The Event Tickets and Registration plugin for WordPress is vulnerable to Insecure Direct Object Reference in all version… wordfence
0cbdf679-1657-4249-a433-8fe0cddd94be
< 3.3.51
MEDIUM 5.3 The Event Manager, Events Calendar, Events Tickets for WooCommerce – Eventin plugin for WordPress is vulnerable to una… wordfence
0cb67f55-6d21-4a4e-9651-fcf671788d16
< 2.2.1
MEDIUM 5.3 The Tutor LMS – Migration Tool plugin for WordPress is vulnerable to unauthorized access of data due to a missing capa… wordfence
0c9856db-3779-4649-9a48-1c7b6d019816
< 4.3.0
MEDIUM 5.3 The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to Sensitive Information Disclosure in all ve… wordfence
0c984d61-df91-411b-a2b3-f816b0ff80ee MEDIUM 5.3 The Printcart Web to Print Product Designer for WooCommerce plugin for WordPress is vulnerable to Directory Traversal i… wordfence
0c98026c-28a9-4c69-9f34-4c3bd4f75d85
< 7.8.0
MEDIUM 5.3 The Mollie Payments for WooCommerce plugin for WordPress is vulnerable to information exposure in all versions up to, an… wordfence
0c976b67-8236-4b34-be93-075beea11f0e
< 27.5
MEDIUM 5.3 The Online Scheduling and Appointment Booking System – Bookly plugin for WordPress is vulnerable to Sensitive Informat… wordfence
0c7a23b2-0d42-4e35-94aa-4cd6e25d8a9b
< 1.7.1057
MEDIUM 5.3 The Royal Elementor Addons plugin for WordPress is vulnerable to unauthorized access due to a missing capability check o… wordfence
0c79e795-0f96-4b20-b4d0-d78fa1aea0f1
< 10.3.0
MEDIUM 5.3 The WP Cost Estimation plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a … wordfence
0c594cf6-d5d8-4927-b61e-145a86a318c3
< 3.5.7.3
MEDIUM 5.3 The Sunshine Photo Cart: Free Client Photo Galleries for Photographers plugin for WordPress is vulnerable to unauthorize… wordfence
0c563a5a-0fa9-49cd-9177-9860a8be9997
< 5.3.2.1
MEDIUM 5.3 The WpResidence theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… wordfence
0c50059d-967d-45bc-be1c-6642474be603 MEDIUM 5.3 The nrgbusiness theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… wordfence
0c4d61ad-2375-4e5c-b047-cb345388f5e9
< 2.3.2
MEDIUM 5.3 The Hotel Booking plugin for WordPress is vulnerable to Payment Bypass in versions up to, and including, 2.3.1. This is … wordfence
0bf85146-8d82-4101-a914-b6d632460366 MEDIUM 5.3 Directory traversal vulnerability in lastfm-proxy.php in the Last.fm Rotation (lastfm-rotation) plugin 1.0 for WordPress… wordfence
0beed2f2-3d20-4e09-9db2-129824889839 MEDIUM 5.3 The Flipmart theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in… wordfence
0bd92f91-d9b1-4f6f-ac1a-477950ea2e80
< 10.14.14
MEDIUM 5.3 The Booking Calendar plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check… wordfence
0bd35ef1-ed28-44db-a1f6-74bc83974c71
< 3.7.4
MEDIUM 5.3 The Hummingbird plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several f… wordfence
← Prev 1230 1231 1232 1233 1234 1235 1236 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top