Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,402 vulnerabilities found (page 1236 of 1617)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| 089b3a1b-0f4b-4ba5-85d8-c1f6b74fe7eb | MEDIUM | 5.3 | The Autochat Automatic Conversation plugin for WordPress is vulnerable to unauthorized modification of data due to a mis… | — | wordfence | |
| 08976f26-435b-4a44-bb17-53bfa8cc0e88 | < 1.3.4 |
MEDIUM | 5.3 | The VW Portfolio theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a functio… | — | wordfence |
| 087b6943-5da8-44fe-8614-832768444178 | < 1.4.8 |
MEDIUM | 5.3 | The Booking Plugin for WordPress Appointments β Time Slot plugin for WordPress is vulnerable to unauthorized email sen… | — | wordfence |
| 086cd6a0-adb6-4e12-b34c-630297f036f3 | < 4.3.7 |
MEDIUM | 5.3 | The Popup Builder plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includ… | — | wordfence |
| 08630dfd-df43-4a5a-8fc7-ba8ff753db3d | < 3.1.25 |
MEDIUM | 5.3 | The Ditty plugin for WordPress is vulnerable to unauthorized editing of dittys due to a missing capability check on the … | — | wordfence |
| 085ea0e9-5b00-4038-a01b-2aebd0aa0809 | MEDIUM | 5.3 | The Joomlaskin JS Multi Hotel (aka JS MultiHotel and Js-Multi-Hotel) plugin 2.2.1 and earlier for WordPress allows remot… | — | wordfence | |
| 0837ba20-4b47-4cc8-9eb3-322289513d79 | < 3.2.10 |
MEDIUM | 5.3 | The Easy Digital Downloads β Sell Digital Files & Subscriptions (eCommerce Store + Payments Made Easy) plugin for Word… | — | wordfence |
| 082dd8b3-da2e-492c-9fc0-44a261df4ba4 | < 5.13 |
MEDIUM | 5.3 | The MP3 Audio Player β Music Player, Podcast Player & Radio by Sonaar plugin for WordPress is vulnerable to unauthoriz… | — | wordfence |
| 08260a34-c612-4f17-94e5-3231d77a3a84 | MEDIUM | 5.3 | The Breeze Checkout plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… | — | wordfence | |
| 081e76e4-60ec-496d-979b-d128771af475 | < 2.0.74 |
MEDIUM | 5.3 | The Radio Player plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on … | — | wordfence |
| 081a5fda-abe2-4f20-bea2-3f7dd3c3a6cf | < 9.1 |
MEDIUM | 5.3 | The WP Cerber Security plugin for WordPress is vulnerable to security protection bypass in versions up to, and including… | — | wordfence |
| 080740e3-ca04-48b4-8b34-64f5e42b1185 | < 1.5.4 |
MEDIUM | 5.3 | The AI Chatbot & Workflow Automation by AIWU plugin for WordPress is vulnerable to Missing Authorization in all versions… | — | wordfence |
| 08066126-95d6-4112-8635-5f45ed5af678 | < 1.2.176 |
MEDIUM | 5.3 | The Extra Product Options Builder for WooCommerce plugin for WordPress is vulnerable to unauthorized access in all versi… | — | wordfence |
| 07f16cf7-94ad-4203-9d71-8e6e349d8c89 | < 28.1.3 |
MEDIUM | 5.3 | The Contest Gallery β Upload & Vote Photos, Media, Sell with PayPal & Stripe plugin for WordPress is vulnerable to una… | — | wordfence |
| 07eec594-6c46-4df0-92f1-f090e510d79d | < 4.6.6.1 |
MEDIUM | 5.3 | The Noo JobMonster theme is vulnerable to Sensitive Information Disclosure via Directory Listing in the /wp-content/uplo… | — | wordfence |
| 07db1f50-0d53-4462-b9e9-9c3de1212201 | < 3.0.0 |
MEDIUM | 5.3 | The WANotifier plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… | — | wordfence |
| 07c719fd-690e-42e6-90ac-c4d55553a7cc | < 1.1.3 |
MEDIUM | 5.3 | The Error Log Viewer by BestWebSoft plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions… | — | wordfence |
| 07bccf56-99b2-42e6-93ab-606af65e6cac | < 2.0 |
MEDIUM | 5.3 | Various Site5 themes for WordPress are vulnerable to Email Spoofing. This makes it possible for unauthenticated attacker… | — | wordfence |
| 079b7337-db2f-4de5-8339-d1dd445ddf54 | MEDIUM | 5.3 | The Yext plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in ve… | — | wordfence | |
| 0777f759-6980-4572-a866-0210bd5f5085 | < 3.1.2 |
MEDIUM | 5.3 | The Canto plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 3.1.1 via th… | — | wordfence |
| 07712191-03b6-4de4-b0a4-e6f03ce9dc81 | < 1.5.3 |
MEDIUM | 5.3 | The Restaurant & Cafe Addon for Elementor plugin for WordPress is vulnerable to unauthorized modification of data due to… | — | wordfence |
| 0760bc9f-0f02-47fd-9865-d9d269a69778 | < 3.1.2 |
MEDIUM | 5.3 | The Membership For WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up t… | — | wordfence |
| 0753bd90-0f1a-4efa-9cbd-7cc80d91e84f | < 3.4.2 |
MEDIUM | 5.3 | The WP Job Openings plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability … | — | wordfence |
| 0739b5ec-b1c4-4451-97c1-f8d5ed26a2d5 | < 1.1.6 |
MEDIUM | 5.3 | The DocCheck Login plugin for WordPress is vulnerable to unauthorized post access in all versions up to, and including, … | — | wordfence |
| 0724ba92-c895-4698-b48d-61dd6353d4da | < 3.26.7 |
MEDIUM | 5.3 | The Wishlist Member plugin for WordPress is vulnerable to denial of service in all versions up to, and excluding, 3.26.7… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →