πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,407
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 30, 2026
Last Updated

40,407 vulnerabilities found (page 1366 of 1617)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
e869800a-6fbc-4a1a-97fd-92ecbf3305ff MEDIUM 4.3 The Appsero analytics tool used in several plugins is vulnerable to Cross-Site Request Forgery due to a missing nonce ch… wordfence
e86581bd-94c3-4b05-9590-ca3b62073703
< 1.6.2
MEDIUM 4.3 The WP-ViperGB plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.… wordfence
e8622c18-bf16-44b2-ac14-76893789583e
< 8.2.6
MEDIUM 4.3 The Quick Contact Form plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu… wordfence
e85f11e5-309b-40a6-b9fa-5416015ea21d
< 1.0.97
MEDIUM 4.3 The AMP for WP plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check… wordfence
e84e6efc-f9d2-45a8-a0eb-b99227980b83
< 1.91.2
MEDIUM 4.3 The FluentBoards – Project Management, Task Management, Goal Tracking, Kanban Board, and, Team Collaboration plugin fo… wordfence
e84b68b6-1ce8-45fb-823f-a61158aa4d21
< 1.2.3
MEDIUM 4.3 The Frontend Post Submission Manager Lite – Frontend Posting WordPress Plugin plugin for WordPress is vulnerable to un… wordfence
e845e565-3c9f-4de3-94ce-e0b03ed4d5a9 MEDIUM 4.3 The Fleur theme for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 2.… wordfence
e82f6e2c-1a05-4c9f-83fd-65e75394c4b8 MEDIUM 4.3 The Crumber plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in… wordfence
e82a4c9b-dac8-4f18-af58-0190ae27d0a3
< 15.1.4
MEDIUM 4.3 The cformsII plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 15.1.3. … wordfence
e82a1af8-2cc0-4952-802f-d2d974f7d838 MEDIUM 4.3 The Embed Extended – Embed Maps, Videos, Websites, Source Codes, and more plugin for WordPress is vulnerable to Cross-… wordfence
e81c4d77-5459-4f56-b339-8da0877a6663
< 3.23.1
MEDIUM 4.3 The Stock Ticker plugin for WordPress is vulnerable to unauthorized settings update due to a missing capability check on… wordfence
e81bc899-7a3c-4e74-a24d-ac29278dee7e MEDIUM 4.3 The Laser plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in v… wordfence
e8113238-5208-42cd-aed6-7ec61c3ced85 MEDIUM 4.3 The PhpList Subber plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including… wordfence
e806ca3b-daae-48a2-9923-315dbf86a9e5 MEDIUM 4.3 The Innovs HR – Complete Human Resource Management System for Your Business plugin for WordPress is vulnerable to Cros… wordfence
e7eb9cb7-ca71-454b-bb4c-da89c8a6e584
< 2.1.4
MEDIUM 4.3 The JW Player plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.1.3. … wordfence
e7dd6818-b266-4f24-bbc0-29b0e4c00ee6
< 6.0.4
MEDIUM 4.3 The MotoPress Hotel Booking plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to 6.0.4… wordfence
e7cd51b1-4b56-4ca6-b891-93af9879862d
< 4.11
MEDIUM 4.3 The Newsletters plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4… wordfence
e7c98de6-7e76-48f3-aa79-57bf4f387428
< 1.0.2
MEDIUM 4.3 The 1 click disable all plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includin… wordfence
e7c08b1a-c73d-488c-96df-cf18acb460bb
< 3.5.6.5
MEDIUM 4.3 The Tickera – Sell Tickets & Manage Events plugin for WordPress is vulnerable to unauthorized modification of data due… wordfence
e7b81559-93a2-4e50-b213-0e22eea8a219
< 6.4.5
MEDIUM 4.3 The Complianz - GDPR/CCPA Cookie Consent plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up… wordfence
e7b49fd1-2d1e-4083-bc1d-010a9c8f4c2f MEDIUM 4.3 The Droit Elementor Addons plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inclu… wordfence
e7a28382-facb-43a7-892a-8ca9e7f0f62b
< 3.7.0
MEDIUM 4.3 The SMS Alert Order Notifications – WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in al… wordfence
e7a24213-5191-4b6d-a2d1-7b79729e6517 MEDIUM 4.3 The SVS Pricing Tables plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu… wordfence
e772fbbe-33d5-46fa-a041-ab07d3f9318f
< 2.4.6.1
MEDIUM 4.3 The Defender Security plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including,… wordfence
e76f5e04-f38e-4c65-858b-af646f53de3a MEDIUM 4.3 The Light Poll plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.… wordfence
← Prev 1363 1364 1365 1366 1367 1368 1369 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top