πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,407
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 30, 2026
Last Updated

40,407 vulnerabilities found (page 1370 of 1617)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
e44dbd0e-d6a7-438b-b1bf-a6628734fec4
< 1.8
MEDIUM 4.3 The DX Unanswered Comments plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and i… wordfence
e4396411-57a2-4bef-9dfb-cbcdc1292de0
< 7.0.15
MEDIUM 4.3 The Slider Revolution plugin for WordPress is vulnerable to Sensitive Information Exposure in versions 7.0.0 - 7.0.14, v… wordfence
e438a090-1a73-450d-9325-276e45eee9ee
< 1.3.03
MEDIUM 4.3 The Gallery – Photo Albums Plugin for WordPress is vulnerable to Multiple Cross-Site Request Forgery in versions befor… wordfence
e40089db-25cc-4987-b976-d1f962645203 MEDIUM 4.3 The SociallyViral theme for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.0.… wordfence
e3fdf38c-866b-4961-b937-2f1641c9fb20
< 3.10.1
MEDIUM 4.3 The ShortPixel Adaptive Images – WebP, AVIF, CDN, Image Optimization plugin for WordPress is vulnerable to unauthorize… wordfence
e3f88a18-5439-4759-ae9f-168f5efc3264
< 6.7.28
MEDIUM 4.3 The WCFM – Frontend Manager for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in … wordfence
e3f05af5-35f5-4813-b8a3-bb90709af677 MEDIUM 4.3 The Google Map Shortcode plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includi… wordfence
e3e00ae4-68a6-4835-8dd7-da5dc104feba MEDIUM 4.3 The Google Typography plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a f… wordfence
e3de6969-a27c-40a1-87ff-ce09a702613c
< 2.0.7
MEDIUM 4.3 The WP Maintenance Mode plugin before 2.0.7 for WordPress allows remote authenticated users to discover all subscriber e… wordfence
e3cd843b-ab38-45c4-a661-78d4e6db5201
< 3.2.1
MEDIUM 4.3 The NotificationX plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability ch… wordfence
e3c5380f-2008-4dda-b0f9-d221a01ad1f0
< 1.7.5
MEDIUM 4.3 The Landing Page Cat plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability… wordfence
e3c371fc-4cf0-478e-b6ae-3bb258c5062e
< 2.6.9
MEDIUM 4.3 The Cryptocurrency Widgets – Price Ticker & Coins List plugin for WordPress is vulnerable to unauthorized access due … wordfence
e3c273ee-3253-481d-bd29-55f226b4e6a8
< 2.1.4
MEDIUM 4.3 The MaxiBlocks: 2300+ Patterns, 280+ Pages, 14.3K Icons & 100 Styles plugin for WordPress is vulnerable to unauthorized … wordfence
e3c1be94-f517-4292-a7dd-5206e9157546 MEDIUM 4.3 The Struktur - Creative Agency WordPress Theme theme for WordPress is vulnerable to Insecure Direct Object Reference in … wordfence
e3b916dc-3b94-4319-a805-0ea99d14429f
< 3.4.3
MEDIUM 4.3 The RSS Aggregator by Feedzy plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inc… wordfence
e3afaa85-9eb5-4cc4-883a-11d42504a8e1 MEDIUM 4.3 The Droit Dark Mode plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1… wordfence
e3adcb85-efc5-429c-8a06-9bfb472d668f
< 3.1.2
MEDIUM 4.3 The Easy Digital Downloads plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inclu… wordfence
e3ac66e2-f508-4059-8723-e7a82b7c2daa
< 1.9.20
MEDIUM 4.3 The PPWP – Password Protect Pages plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versio… wordfence
e3aac40c-1576-45b5-90f8-14ff05c089c7
< 2.11
MEDIUM 4.3 The Web Accessibility By accessiBe plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up t… wordfence
e3a70510-51c8-49c3-933b-79e79dfb8611
< 2.1.14
MEDIUM 4.3 The WPZOOM Social Feed Widget & Block plugin for WordPress is vulnerable to unauthorized access due to a missing capabil… wordfence
e39ebe27-7780-48b6-8dca-7da7a78fce69 MEDIUM 4.3 The Google PageRank Display plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to and inclu… wordfence
e399153e-8a13-4e1b-bcfa-2d7864c6828b
< 2.4.8
MEDIUM 4.3 The WP Prayer II plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, … wordfence
e3917e1a-c230-46ad-9889-6ab233ecc4d0 MEDIUM 4.3 The Simcast plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.0… wordfence
e375f761-459c-4cad-823b-2a94ac901410
< 3.6.8
MEDIUM 4.3 The Easy Digital Downloads plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and i… wordfence
e37208ce-4488-40d1-bc3a-114c41edbb87 MEDIUM 4.3 The Chat by Chatwee plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… wordfence
← Prev 1367 1368 1369 1370 1371 1372 1373 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top