πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,407
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 30, 2026
Last Updated

40,407 vulnerabilities found (page 1348 of 1617)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
fc4afb78-fca6-4cc2-8e64-4785d93055e6
< 4.3.3
MEDIUM 4.3 The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to unauthorized deletion of quiz question ans… wordfence
fc34de39-bd2f-4ca2-8363-d436d5e2db8d
< 5.3.5
MEDIUM 4.3 The WooCommerce Multilingual & Multicurrency plugin for WordPress is vulnerable to unauthorized access due to a missing … wordfence
fc186712-5314-4471-bf02-4fd580c338c9
< 0.6.2.6
MEDIUM 4.3 The WP Accessibility Helper (WAH) plugin for WordPress is vulnerable to unauthorized modification of data due to a missi… wordfence
fc0a975b-4e8c-48ae-bf59-3267b996bb1e MEDIUM 4.3 The ProfileGrid – User Profiles, Groups and Communities plugin for WordPress is vulnerable to Cross-Site Request Forge… wordfence
fc083b52-06f0-4a18-a581-310ec623184a MEDIUM 4.3 The MJ Update History plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a f… wordfence
fbffc404-9ea9-4025-8241-2c374b760ca3 MEDIUM 4.3 The WP Status Notifier plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu… wordfence
fbfe41c0-d77f-4172-bb49-4321ed8d24a8 MEDIUM 4.3 The NertWorks All in One Social Share Tools plugin for WordPress is vulnerable to Cross-Site Request Forgery in all vers… wordfence
fbfcb3c5-23f7-409a-a8db-92c4b714ba6a MEDIUM 4.3 The Directory Listings WordPress plugin – uListing plugin for WordPress is vulnerable to unauthorized access due to a … wordfence
fbf838f4-356e-4952-8565-c3b627c06b17 MEDIUM 4.3 The Construction Light theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a f… wordfence
fbef0d8c-dd16-4ef1-9d3a-50c2e1c0dca2
< 2.0.23
MEDIUM 4.3 The Distance Based Shipping Calculator plugin for WordPress is vulnerable to unauthorized access due to a missing capabi… wordfence
fbeb146e-6b3e-4b84-80a6-9e1c507b5337 MEDIUM 4.3 The Open Close WooCommerce Store plugin for WordPress is vulnerable to unauthorized access due to a missing capability c… wordfence
fbe32b9e-a6da-4257-b740-63a143cee42f MEDIUM 4.3 The Ultimate Viral Quiz plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and incl… wordfence
fbd5d505-bf2b-4fc1-a710-5de4ddb2242d
< 7.6.8
MEDIUM 4.3 The Themify Builder plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… wordfence
fbd12ed1-a468-4aaf-b6c9-102dd00aca5f
< 13.5.2.1
MEDIUM 4.3 The Product Feed PRO for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to,… wordfence
fbc8cc43-8509-44e5-bd16-367eca02c24e
< 1.3.2
MEDIUM 4.3 The Dashboard To-Do List plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includi… wordfence
fbbc921e-ccf4-4572-ac76-b2cfe502df44
< 2.5.4
MEDIUM 4.3 The Event Tickets with Ticket Scanner plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions u… wordfence
fba419b8-bab0-4918-8d68-1e5bf75186c2
< 3.5.1.0
MEDIUM 4.3 The Tickera plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.4.9.9. … wordfence
fb947f1f-8cce-448d-9c86-1d3c01a4637d
< 5.6
MEDIUM 4.3 The Image Hover Effects plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includin… wordfence
fb8d6c59-fa7f-48e3-b571-69179c56edcf
< 3.2.34
MEDIUM 4.3 The Front End Users plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the E… wordfence
fb863896-5a5a-4c65-b2a5-0901de7961f2 MEDIUM 4.3 The JS & CSS Script Optimizer plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and in… wordfence
fb7b1dda-6758-4ba7-96b8-8fc8327b9992
< 3.0.7
MEDIUM 4.3 The Paid Member Subscriptions plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, … wordfence
fb70339c-0f1a-4acc-af7a-8a0320fdfe71 MEDIUM 4.3 The SendPress Newsletters plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ… wordfence
fb3b1429-4d58-41e3-bc99-9d0d38885293
< 1.3.7
MEDIUM 4.3 The Integration for WooCommerce and Zoho CRM plugin for WordPress is vulnerable to Open Redirect in versions up to, and … wordfence
fb2be4cd-2641-4f7f-993c-1c78e5a1d5da
< 2.0.11
MEDIUM 4.3 The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to unauthorized modification of data due to a missing… wordfence
fb1735ce-88a9-4796-94cf-2ed213a2ea68
< 4.0.7
MEDIUM 4.3 The Visualizer – Tables & Charts Manager with Built-in AI Generator plugin for WordPress is vulnerable to unauthorized… wordfence
← Prev 1345 1346 1347 1348 1349 1350 1351 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top