πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,407
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 30, 2026
Last Updated

40,407 vulnerabilities found (page 1363 of 1617)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
ebe59b29-f8d4-4ea0-b4a8-d758ddb1c594
< 1.0.6
MEDIUM 4.3 The TableOn – WordPress Posts Table Filterable plugin for WordPress is vulnerable to unauthorized access due to a miss… wordfence
ebd96d9c-c1ab-4a53-a52a-9fc2541482f2
< 7.8.6
MEDIUM 4.3 The Hustle – Email Marketing, Lead Generation, Optins, Popups plugin for WordPress is vulnerable to unauthorized acces… wordfence
ebd78e52-f20d-42be-8f68-3d09d5abf837
< 3.2.6
MEDIUM 4.3 The Starter Templates (free and premium) plugin for WordPress is vulnerable to unauthorized modification of data due to … wordfence
ebd1483a-949d-4edb-9b86-007879d2d207
< 8.0.8
MEDIUM 4.3 The Recipe Maker For Your Food Blog from Zip Recipes plugin for WordPress is vulnerable to Cross-Site Request Forgery in… wordfence
ebcd13e2-bc72-415f-9e2b-7213e9acf425
< 1.1.6
MEDIUM 4.3 The Digital Newspaper theme for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, … wordfence
ebc65c11-184d-480a-959e-8b0a9d6c139d
< 2.9.10
MEDIUM 4.3 The ListingPro - WordPress Directory & Listing Theme theme for WordPress is vulnerable to unauthorized access due to a m… wordfence
ebbca82d-9a03-4984-8c95-a4da7ea4da60
< 7.0.9
MEDIUM 4.3 The Ecwid by Lightspeed Ecommerce Shopping Cart plugin for WordPress is vulnerable to unauthorized access due to a missi… wordfence
eba48c51-87d9-4e7e-b4c1-0205cd96d033
< 1.7.2
MEDIUM 4.3 The RapidLoad Power-Up for Autoptimize plugin for WordPress is vulnerable to unauthorized plugin settings update due to … wordfence
eb9253de-7139-422b-aa17-b25937d6a21c
< 3.1.17
MEDIUM 4.3 The Strong Testimonials plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a… wordfence
eb8517bc-f45f-40a1-ae80-ed227c8b32d7
< 8.3.0
MEDIUM 4.3 The WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 8.2.2… wordfence
eb6642c0-9011-419b-bef6-5aa594993c01
< 4.4
MEDIUM 4.3 The Paytium: Mollie payment forms & donations plugin for WordPress is vulnerable to unauthorized notification dismissal … wordfence
eb4dda86-4abb-49b6-8c71-beae65ec9832 MEDIUM 4.3 The CLP – Custom Login Page by NiteoThemes plugin for WordPress is vulnerable to Cross-Site Request Forgery in all ver… wordfence
eb43a145-2f35-456d-bccb-671f381db1ce
< 4.1.4
MEDIUM 4.3 The Elementor Website Builder – more than just a page builder plugin for WordPress is vulnerable to Sensitive Informat… wordfence
eb3ef121-13ea-4e42-90c1-1f4bd31ebbcf
< 1.6.6
MEDIUM 4.3 The Ocean Extra plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.6.5… wordfence
eb2f6c67-ef4a-4afc-bd61-6c0185e354a8
< 2.9.4.1
MEDIUM 4.3 The Beaver Builder – WordPress Page Builder plugin for WordPress is vulnerable to Sensitive Information Exposure in al… wordfence
eb14f084-6f36-4702-8a28-b62811739407 MEDIUM 4.3 The Recooty – Job Widget (Old Dashboard) plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versi… wordfence
eb027f2b-097a-482a-a575-f4bd5881c919
< 3.2.10
MEDIUM 4.3 The Sunshine Photo Cart plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability ch… wordfence
eafe73b4-b492-45c7-adca-d9a3042144b4
< 1.3.6
MEDIUM 4.3 The Move Addons for Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to… wordfence
eafab8a2-6989-4923-9474-925cc6ef3e81
< 0.7.5
MEDIUM 4.3 The WooCommerce Booking Bundle Hours plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up… wordfence
eaf9cc48-1ba6-4e9b-9f49-54f7747c26e0
< 1.0.13
MEDIUM 4.3 The Meks Video Importer plugin for WordPress is vulnerable to unauthorized API key modification due to a missing capabil… wordfence
eaf32034-8749-4eba-8bf0-a440d78c455a MEDIUM 4.3 The WordPress Appointment Booking and Online Scheduling Plugin by Appointy plugin for WordPress is vulnerable to Cross-S… wordfence
eaead805-b122-4418-a4a0-cf1b0925f3c3 MEDIUM 4.3 The Tabs & Accordion plugin for WordPress is vulnerable to Arbitrary Content Injection in versions up to, and including,… wordfence
eacfcc78-b4c3-46ba-a9d3-302fd207dd33
< 2.13.8
MEDIUM 4.3 The Spectra plugin for WordPress is vulnerable to unauthorized modification of data due to an insufficient capability ch… wordfence
eabb1931-19c0-4999-937e-c51f01dcf676
< 19.9.9.4
MEDIUM 4.3 The reHub Framework plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and excl… wordfence
eab5de7e-ddab-4c6f-af87-acce7b5ff15b MEDIUM 4.3 The Rabbit Hole plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1… wordfence
← Prev 1360 1361 1362 1363 1364 1365 1366 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top