Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,407 vulnerabilities found (page 1318 of 1617)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| 5ec401d8-bbdf-4be6-bcc5-51f8c8ec7cfd | < 1.20.20 |
MEDIUM | 4.4 | The E2Pdf β Export To Pdf Tool for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via adm… | — | wordfence |
| 5ebf1e83-50b8-4f56-ba76-10100375edda | < 9.6.2 |
MEDIUM | 4.4 | The PixelYourSite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versions up to… | — | wordfence |
| 5e91a6bd-05ae-4088-8c1f-bc5598545606 | < 2.3 |
MEDIUM | 4.4 | The Enhanced WP Contact Form plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in ver… | — | wordfence |
| 5e8e7199-f5f1-4036-b2cd-88b7e806873d | < 6.5.2 |
MEDIUM | 4.4 | The WP SMS β Messaging, SMS & MMS Notifications, 2FA & OTP for WordPress, WooCommerce, GravityForms, etc plugin for Wo… | — | wordfence |
| 5e8a8e0e-6dc0-4d9f-aee3-1fd940c49d3d | < 4.1.2 |
MEDIUM | 4.4 | The Triberr plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, … | — | wordfence |
| 5e79b62b-1d60-4c4c-bd0b-4207b20fa3cd | < 5.2.3 |
MEDIUM | 4.4 | The Herd Effects plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versions up to,… | — | wordfence |
| 5e6bcaf4-c1ae-4bd7-a145-386b3fd756ed | MEDIUM | 4.4 | The Silencesoft RSS Reader plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and incl… | — | wordfence | |
| 5e6a7f09-2166-426e-a548-daafb23363a6 | < 1.6 |
MEDIUM | 4.4 | The Simply Excerpts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions… | — | wordfence |
| 5e5a29d8-f40e-4711-aaae-1aa01ebd11fe | < 4.3.5 |
MEDIUM | 4.4 | The Popup Builder β Create highly converting, mobile friendly marketing popups. plugin for WordPress is vulnerable to … | — | wordfence |
| 5e2c83b6-3444-4cd1-82ec-567937c563b9 | < 1.4 |
MEDIUM | 4.4 | The Captcha Them All for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versions up to, an… | — | wordfence |
| 5e24be91-6a58-42c3-84dd-4090da55b720 | < 3.0.4 |
MEDIUM | 4.4 | The GTranslate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'fincl_langs', 'incl_langs' and… | — | wordfence |
| 5e1a11fc-16d3-4a63-907f-af64c770e3bc | MEDIUM | 4.4 | The Business Contact Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and inc… | — | wordfence | |
| 5e04edb6-ef37-4ea8-a734-dbdcf689ba9b | < 4.9.6 |
MEDIUM | 4.4 | The Survey Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Survey fields in all versions up … | — | wordfence |
| 5ddeefef-13c0-4c26-9a8a-141ebc7846ee | < 8.8.5 |
MEDIUM | 4.4 | The Newsletter β Send awesome emails from WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting … | — | wordfence |
| 5dc14681-b537-4ce2-af79-fc9ff1083e20 | < 1.0.3 |
MEDIUM | 4.4 | The WH Tweaks plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 1.0.2 … | — | wordfence |
| 5dbba038-da5f-44d9-b72a-44cbff01596e | < 2.5.0 |
MEDIUM | 4.4 | The EazyDocs β Most Powerful Knowledge base, wiki, Documentation Builder Plugin plugin for WordPress is vulnerable to … | — | wordfence |
| 5dadd49c-33b2-43d8-a6a9-64a3c37c4b52 | MEDIUM | 4.4 | The Related Posts Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versi… | — | wordfence | |
| 5da7875f-a429-41f3-a05d-81200991585f | MEDIUM | 4.4 | The Gravitate Automated Tester plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and … | — | wordfence | |
| 5d6b5a4c-1dc9-4d86-ac41-61880637fcbb | < 1.0.2 |
MEDIUM | 4.4 | The Stock market charts from finviz plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings… | — | wordfence |
| 5d173077-06c4-4a23-a664-0be8516053ec | MEDIUM | 4.4 | The SendPress Newsletters plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versio… | — | wordfence | |
| 5cfede31-66c3-4d2c-a79d-0e0ea54da50c | < 3.12.2 |
MEDIUM | 4.4 | The User Profile Builder β Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is… | — | wordfence |
| 5cdc0e86-c1dc-4069-a9c0-08bbf1a9c17c | < 5.7.52 |
MEDIUM | 4.4 | The Icegram Express formerly known as Email Subscribers β The Ultimate Email Marketing & Automation Plugin for WordPre… | — | wordfence |
| 5c76871e-b774-4284-ad00-f8ef7f6df389 | < 2.3.3 |
MEDIUM | 4.4 | The HollerBox plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versions up to, an… | — | wordfence |
| 5c6a88c3-18b7-470f-8014-373ead66dcfa | < 2.0.1 |
MEDIUM | 4.4 | The Blog-in-Blog plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'blog_in_blog' shortcode in v… | — | wordfence |
| 5c31072d-9921-4bef-809c-b97a1020a2cf | < 6.7.1 |
MEDIUM | 4.4 | The Site Reviews plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versions up to,… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →