πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,402
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 28, 2026
Last Updated

40,402 vulnerabilities found (page 1236 of 1617)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
089b3a1b-0f4b-4ba5-85d8-c1f6b74fe7eb MEDIUM 5.3 The Autochat Automatic Conversation plugin for WordPress is vulnerable to unauthorized modification of data due to a mis… wordfence
08976f26-435b-4a44-bb17-53bfa8cc0e88
< 1.3.4
MEDIUM 5.3 The VW Portfolio theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a functio… wordfence
087b6943-5da8-44fe-8614-832768444178
< 1.4.8
MEDIUM 5.3 The Booking Plugin for WordPress Appointments – Time Slot plugin for WordPress is vulnerable to unauthorized email sen… wordfence
086cd6a0-adb6-4e12-b34c-630297f036f3
< 4.3.7
MEDIUM 5.3 The Popup Builder plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includ… wordfence
08630dfd-df43-4a5a-8fc7-ba8ff753db3d
< 3.1.25
MEDIUM 5.3 The Ditty plugin for WordPress is vulnerable to unauthorized editing of dittys due to a missing capability check on the … wordfence
085ea0e9-5b00-4038-a01b-2aebd0aa0809 MEDIUM 5.3 The Joomlaskin JS Multi Hotel (aka JS MultiHotel and Js-Multi-Hotel) plugin 2.2.1 and earlier for WordPress allows remot… wordfence
0837ba20-4b47-4cc8-9eb3-322289513d79
< 3.2.10
MEDIUM 5.3 The Easy Digital Downloads – Sell Digital Files & Subscriptions (eCommerce Store + Payments Made Easy) plugin for Word… wordfence
082dd8b3-da2e-492c-9fc0-44a261df4ba4
< 5.13
MEDIUM 5.3 The MP3 Audio Player – Music Player, Podcast Player & Radio by Sonaar plugin for WordPress is vulnerable to unauthoriz… wordfence
08260a34-c612-4f17-94e5-3231d77a3a84 MEDIUM 5.3 The Breeze Checkout plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… wordfence
081e76e4-60ec-496d-979b-d128771af475
< 2.0.74
MEDIUM 5.3 The Radio Player plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on … wordfence
081a5fda-abe2-4f20-bea2-3f7dd3c3a6cf
< 9.1
MEDIUM 5.3 The WP Cerber Security plugin for WordPress is vulnerable to security protection bypass in versions up to, and including… wordfence
080740e3-ca04-48b4-8b34-64f5e42b1185
< 1.5.4
MEDIUM 5.3 The AI Chatbot & Workflow Automation by AIWU plugin for WordPress is vulnerable to Missing Authorization in all versions… wordfence
08066126-95d6-4112-8635-5f45ed5af678
< 1.2.176
MEDIUM 5.3 The Extra Product Options Builder for WooCommerce plugin for WordPress is vulnerable to unauthorized access in all versi… wordfence
07f16cf7-94ad-4203-9d71-8e6e349d8c89
< 28.1.3
MEDIUM 5.3 The Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe plugin for WordPress is vulnerable to una… wordfence
07eec594-6c46-4df0-92f1-f090e510d79d
< 4.6.6.1
MEDIUM 5.3 The Noo JobMonster theme is vulnerable to Sensitive Information Disclosure via Directory Listing in the /wp-content/uplo… wordfence
07db1f50-0d53-4462-b9e9-9c3de1212201
< 3.0.0
MEDIUM 5.3 The WANotifier plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… wordfence
07c719fd-690e-42e6-90ac-c4d55553a7cc
< 1.1.3
MEDIUM 5.3 The Error Log Viewer by BestWebSoft plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions… wordfence
07bccf56-99b2-42e6-93ab-606af65e6cac
< 2.0
MEDIUM 5.3 Various Site5 themes for WordPress are vulnerable to Email Spoofing. This makes it possible for unauthenticated attacker… wordfence
079b7337-db2f-4de5-8339-d1dd445ddf54 MEDIUM 5.3 The Yext plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in ve… wordfence
0777f759-6980-4572-a866-0210bd5f5085
< 3.1.2
MEDIUM 5.3 The Canto plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 3.1.1 via th… wordfence
07712191-03b6-4de4-b0a4-e6f03ce9dc81
< 1.5.3
MEDIUM 5.3 The Restaurant & Cafe Addon for Elementor plugin for WordPress is vulnerable to unauthorized modification of data due to… wordfence
0760bc9f-0f02-47fd-9865-d9d269a69778
< 3.1.2
MEDIUM 5.3 The Membership For WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up t… wordfence
0753bd90-0f1a-4efa-9cbd-7cc80d91e84f
< 3.4.2
MEDIUM 5.3 The WP Job Openings plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability … wordfence
0739b5ec-b1c4-4451-97c1-f8d5ed26a2d5
< 1.1.6
MEDIUM 5.3 The DocCheck Login plugin for WordPress is vulnerable to unauthorized post access in all versions up to, and including, … wordfence
0724ba92-c895-4698-b48d-61dd6353d4da
< 3.26.7
MEDIUM 5.3 The Wishlist Member plugin for WordPress is vulnerable to denial of service in all versions up to, and excluding, 3.26.7… wordfence
← Prev 1233 1234 1235 1236 1237 1238 1239 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top