πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,407
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 30, 2026
Last Updated

40,407 vulnerabilities found (page 1305 of 1617)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
8ea04e2b-8473-40b7-a734-b409d539b494
< 3.0.4
MEDIUM 4.4 The Accordion plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 3.0.3 … wordfence
8e9bf649-7cf7-4d90-812f-4af847818387
< 1.9.8
MEDIUM 4.4 The Responsive Contact Form Builder & Lead Generation Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scr… wordfence
8e5e92f2-6fd0-4102-aa8e-2fe8efd9cbaa
< 3.7
MEDIUM 4.4 The Livemesh Addons for Beaver Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via settings in… wordfence
8e1ede84-05f5-4eae-97de-63b32b62bad3 MEDIUM 4.4 The TZ PlusGallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 1… wordfence
8e187b71-860e-4404-bbe2-193c6ecfd485 MEDIUM 4.4 The White Label Branding for Elementor Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting vi… wordfence
8df2134a-5099-415e-a9e0-3c8e2f2c2720 MEDIUM 4.4 The DL Yandex Metrika plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versio… wordfence
8dca7f2e-f572-468a-8342-a6e096441561 MEDIUM 4.4 The Restaurant Solutions – Checklist plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Checkli… wordfence
8db8adba-347f-4bdc-8215-23b6f8eb0327
< 1.25.0
MEDIUM 4.4 The Post Affiliate Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and includin… wordfence
8d745937-4b0a-480a-9771-8af3288ee98f
< 3.3.3
MEDIUM 4.4 The Easy Digital Downloads – eCommerce Payments and Subscriptions made easy plugin for WordPress is vulnerable to Stor… wordfence
8cde9f8d-ce66-419e-91a2-63a63a95f032
< 3.2.0
MEDIUM 4.4 The Slider & Popup Builder by Depicter – Add Image Slider, Carousel Slider, Exit Intent Popup, Popup Modal, Coupon Pop… wordfence
8cc15755-0348-48e6-b269-cefad504752d MEDIUM 4.4 The URL Shortener | Conversion Tracking | AB Testing | WooCommerce plugin for WordPress is vulnerable to Stored Cross-… wordfence
8ca19824-f47b-4af5-a3cf-646aa9baeae8
< 3.3.99
MEDIUM 4.4 The Zephyr Project Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via settings in all version… wordfence
8c9e2b92-fde2-49b7-aae9-964e359610a5
< 2.5
MEDIUM 4.4 The WP Modal Popup with Cookie Integration plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions… wordfence
8c8a3f00-4006-4a9e-8492-03e0b2820739
< 2.7.2
MEDIUM 4.4 The WP Abstracts plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.7… wordfence
8c6f5f8c-7a8c-4524-8cb8-e14a6f182bbf
< 3.8.12
MEDIUM 4.4 The Ninja Forms plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 3.8.… wordfence
8c48dae5-133e-4051-89ad-3e3479431d82 MEDIUM 4.4 The Simple Restaurant Menu plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and incl… wordfence
8bea21d9-26d1-49a5-a130-26d99818d4d3 MEDIUM 4.4 The TableGen – Data Table Generator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settin… wordfence
8bc78a2b-dc7c-4ee9-8721-e644f3670091 MEDIUM 4.4 The Shoutcast and Icecast HTML5 Web Radio Player by YesStreaming.com plugin for WordPress is vulnerable to Stored Cross-… wordfence
8b9a40e6-2b63-4866-9eec-ff09e73dc8fb
< 6.2.4
MEDIUM 4.4 The AI ChatBot for WordPress – WPBot plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin setti… wordfence
8b9843bf-97d4-4dd4-be9f-7e7679fcf5aa MEDIUM 4.4 The Lava Ajax Search plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including,… wordfence
8b5e86be-8a35-48d8-a676-9f7074b81cb7
< 8.0.4
MEDIUM 4.4 The Quick Contact Form plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and includin… wordfence
8b40165b-17e3-4b87-8d0d-90d60ba4bf81
< 3.6.7
MEDIUM 4.4 The FareHarbor for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and in… wordfence
8b24c3da-4d4b-4cb3-836e-b58f38dd80cf
< 3.1.8
MEDIUM 4.4 The Product Enquiry for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings… wordfence
8b2409a3-e94f-4d1d-bdf6-870fc8f0c84f
< 1.1.5.9
MEDIUM 4.4 The Hostel plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, a… wordfence
8b212a1a-0e2b-4327-93b5-398bd7a36b5c
< 20250327
MEDIUM 4.4 The User Submitted Posts – Enable Users to Submit Posts from the Front End plugin for WordPress is vulnerable to Store… wordfence
← Prev 1302 1303 1304 1305 1306 1307 1308 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top