Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,407 vulnerabilities found (page 1348 of 1617)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| fc4afb78-fca6-4cc2-8e64-4785d93055e6 | < 4.3.3 |
MEDIUM | 4.3 | The LearnPress β WordPress LMS Plugin plugin for WordPress is vulnerable to unauthorized deletion of quiz question ans… | — | wordfence |
| fc34de39-bd2f-4ca2-8363-d436d5e2db8d | < 5.3.5 |
MEDIUM | 4.3 | The WooCommerce Multilingual & Multicurrency plugin for WordPress is vulnerable to unauthorized access due to a missing … | — | wordfence |
| fc186712-5314-4471-bf02-4fd580c338c9 | < 0.6.2.6 |
MEDIUM | 4.3 | The WP Accessibility Helper (WAH) plugin for WordPress is vulnerable to unauthorized modification of data due to a missi… | — | wordfence |
| fc0a975b-4e8c-48ae-bf59-3267b996bb1e | MEDIUM | 4.3 | The ProfileGrid β User Profiles, Groups and Communities plugin for WordPress is vulnerable to Cross-Site Request Forge… | — | wordfence | |
| fc083b52-06f0-4a18-a581-310ec623184a | MEDIUM | 4.3 | The MJ Update History plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a f… | — | wordfence | |
| fbffc404-9ea9-4025-8241-2c374b760ca3 | MEDIUM | 4.3 | The WP Status Notifier plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu… | — | wordfence | |
| fbfe41c0-d77f-4172-bb49-4321ed8d24a8 | MEDIUM | 4.3 | The NertWorks All in One Social Share Tools plugin for WordPress is vulnerable to Cross-Site Request Forgery in all vers… | — | wordfence | |
| fbfcb3c5-23f7-409a-a8db-92c4b714ba6a | MEDIUM | 4.3 | The Directory Listings WordPress plugin β uListing plugin for WordPress is vulnerable to unauthorized access due to a … | — | wordfence | |
| fbf838f4-356e-4952-8565-c3b627c06b17 | MEDIUM | 4.3 | The Construction Light theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a f… | — | wordfence | |
| fbef0d8c-dd16-4ef1-9d3a-50c2e1c0dca2 | < 2.0.23 |
MEDIUM | 4.3 | The Distance Based Shipping Calculator plugin for WordPress is vulnerable to unauthorized access due to a missing capabi… | — | wordfence |
| fbeb146e-6b3e-4b84-80a6-9e1c507b5337 | MEDIUM | 4.3 | The Open Close WooCommerce Store plugin for WordPress is vulnerable to unauthorized access due to a missing capability c… | — | wordfence | |
| fbe32b9e-a6da-4257-b740-63a143cee42f | MEDIUM | 4.3 | The Ultimate Viral Quiz plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and incl… | — | wordfence | |
| fbd5d505-bf2b-4fc1-a710-5de4ddb2242d | < 7.6.8 |
MEDIUM | 4.3 | The Themify Builder plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… | — | wordfence |
| fbd12ed1-a468-4aaf-b6c9-102dd00aca5f | < 13.5.2.1 |
MEDIUM | 4.3 | The Product Feed PRO for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to,… | — | wordfence |
| fbc8cc43-8509-44e5-bd16-367eca02c24e | < 1.3.2 |
MEDIUM | 4.3 | The Dashboard To-Do List plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includi… | — | wordfence |
| fbbc921e-ccf4-4572-ac76-b2cfe502df44 | < 2.5.4 |
MEDIUM | 4.3 | The Event Tickets with Ticket Scanner plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions u… | — | wordfence |
| fba419b8-bab0-4918-8d68-1e5bf75186c2 | < 3.5.1.0 |
MEDIUM | 4.3 | The Tickera plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.4.9.9. … | — | wordfence |
| fb947f1f-8cce-448d-9c86-1d3c01a4637d | < 5.6 |
MEDIUM | 4.3 | The Image Hover Effects plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includin… | — | wordfence |
| fb8d6c59-fa7f-48e3-b571-69179c56edcf | < 3.2.34 |
MEDIUM | 4.3 | The Front End Users plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the E… | — | wordfence |
| fb863896-5a5a-4c65-b2a5-0901de7961f2 | MEDIUM | 4.3 | The JS & CSS Script Optimizer plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and in… | — | wordfence | |
| fb7b1dda-6758-4ba7-96b8-8fc8327b9992 | < 3.0.7 |
MEDIUM | 4.3 | The Paid Member Subscriptions plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, … | — | wordfence |
| fb70339c-0f1a-4acc-af7a-8a0320fdfe71 | MEDIUM | 4.3 | The SendPress Newsletters plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ… | — | wordfence | |
| fb3b1429-4d58-41e3-bc99-9d0d38885293 | < 1.3.7 |
MEDIUM | 4.3 | The Integration for WooCommerce and Zoho CRM plugin for WordPress is vulnerable to Open Redirect in versions up to, and … | — | wordfence |
| fb2be4cd-2641-4f7f-993c-1c78e5a1d5da | < 2.0.11 |
MEDIUM | 4.3 | The Getwid β Gutenberg Blocks plugin for WordPress is vulnerable to unauthorized modification of data due to a missing… | — | wordfence |
| fb1735ce-88a9-4796-94cf-2ed213a2ea68 | < 4.0.7 |
MEDIUM | 4.3 | The Visualizer β Tables & Charts Manager with Built-in AI Generator plugin for WordPress is vulnerable to unauthorized… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →