πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,407
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 30, 2026
Last Updated

40,407 vulnerabilities found (page 1336 of 1617)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
208052ca-3ecc-4efd-8772-0cfa4db08a03 MEDIUM 4.4 The WP jQuery DataTable plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and includi… wordfence
2062df27-e553-4753-9362-ee1c1cc6e9f5 MEDIUM 4.4 The SEO Search Permalink plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and includ… wordfence
1febe071-b296-4958-a9e8-9be9391f2390 MEDIUM 4.4 The Internal Link Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all ve… wordfence
1fd62c3d-2c15-4d1c-9210-4c2aca379fe3 MEDIUM 4.4 The Institute Management plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Enquiry Form Title' … wordfence
1fd0a887-db61-4b2d-af52-ec1d9c525663 MEDIUM 4.4 The adBuddy+ (AdBlocker Detection) by NetfunkDesign plugin for WordPress is vulnerable to Stored Cross-Site Scripting vi… wordfence
1f9bf735-a6ad-45c5-becd-efa8b44c9282
< 5.7.45
MEDIUM 4.4 The Email Subscribers by Icegram Express – Affordable, Powerful Email Marketing for WordPress & WooCommerce plugin for… wordfence
1f97d70f-213a-4417-8ef4-94688ed4fd80 MEDIUM 4.4 The Elfsight Testimonials Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, an… wordfence
1f87135a-4018-4985-bfff-4c59736af26d
< 3.2.3
MEDIUM 4.4 wordfence
1f628801-8c11-4464-a440-879f97949bf6
< 1.8.1
MEDIUM 4.4 The F4 Improvements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions… wordfence
1f622e20-2f7e-44ed-8237-fbf25323d2ce MEDIUM 4.4 The Advanced Text Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in version… wordfence
1f12cdb6-df2d-419d-a29c-1ff7f9d098f4
< 2.7.13
MEDIUM 4.4 The White Label CMS plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions… wordfence
1ef02ecc-6a7b-4782-a891-a1d66d770c81
< 8.0.5
MEDIUM 4.4 The Amministrazione Trasparente plugin for WordPress is vulnerable to Stored Cross-Site Scripting via settings in versio… wordfence
1eba0dbc-c3e3-4d63-92e3-75100e3b0c14
< 1.5.3
MEDIUM 4.4 The WooCommerce Additional Fees On Checkout (Free) plugin for WordPress is vulnerable to Stored Cross-Site Scripting in … wordfence
1e9458e4-570e-4871-84ac-380107037b1c
< 1.63.0
MEDIUM 4.4 The Connect Contact Form 7, WooCommerce To Google Sheets & Other Platforms – Advanced Form Integration plugin for Word… wordfence
1e82c950-54dd-4bdf-9c7c-e880c934ddc9
< 2.15.0
MEDIUM 4.4 The Carta Online plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up… wordfence
1e35b077-8bb4-49fb-bd79-d9086d9a26dc
< 1.5.1
MEDIUM 4.4 The TeraWallet – Best WooCommerce Wallet System With Cashback Rewards, Partial Payment, Wallet Refunds plugin for Word… wordfence
1df04293-87e9-4ab4-975d-54d36a993ab0
< 2.0.4
MEDIUM 4.4 The WordPress File Sharing Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings i… wordfence
1dc1a20a-6e7e-4f5c-b0a0-cc79d6e4b0c4
< 3.5.0
MEDIUM 4.4 The Inline Related Posts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all ver… wordfence
1dad9de0-5e43-4dfd-a56c-5e9efff35c0a
< 1.4.10
MEDIUM 4.4 The Store Locator WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting 'category_name', 'descript… wordfence
1d79213c-bff3-4849-acc8-f658222ecdae MEDIUM 4.4 The Exit Popup Free plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, … wordfence
1d5ac3df-ddaf-4c78-acd3-baddea42443f
< 1.4.9
MEDIUM 4.4 The Accredible Certificates & Open Badges plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin se… wordfence
1d2c6f19-025e-4c17-b5d9-4bbddbaf66d1 MEDIUM 4.4 The iframe popup plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versions up to,… wordfence
1d2ae0d0-f666-4750-9ce0-70a061fe2a49
< 4.6.0
MEDIUM 4.4 The Logo Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up … wordfence
1cee24a0-0897-4f48-bdca-0a5118899bed MEDIUM 4.4 The Advance Food Menu plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including… wordfence
1cd2d269-5af2-40ab-b424-505c95c56688 MEDIUM 4.4 The Weekly Planner plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions … wordfence
← Prev 1333 1334 1335 1336 1337 1338 1339 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top