Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,407 vulnerabilities found (page 1399 of 1617)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| c5d330cd-ad1f-451e-bf41-39cfeb296cf0 | < 2.7.31.2 |
MEDIUM | 4.3 | The Pods β Custom Content Types and Fields plugin for WordPress is vulnerable to Missing Authorization in all versions… | — | wordfence |
| c5d0dda5-c323-484b-be34-cf2fc4496602 | < 1.0.22 |
MEDIUM | 4.3 | The Feeds For TikTok β Show TikTok Videos in Grid or Feed Layout plugin for WordPress is vulnerable to unauthorized ac… | — | wordfence |
| c5b74908-65ed-4b6f-856f-e95cfd64f998 | < 2.6.3 |
MEDIUM | 4.3 | The WP Abstracts plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.6.… | — | wordfence |
| c5b30d27-a3f8-4535-a47f-675c939ec648 | MEDIUM | 4.3 | The Remove Yellow BGBOX plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and incl… | — | wordfence | |
| c5b0939a-1699-483c-9a4f-7978155e6ad1 | < 12.4.1 |
MEDIUM | 4.3 | The Product Feed PRO for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to,… | — | wordfence |
| c59f1784-da65-4e6d-b284-d65ee2196be9 | MEDIUM | 4.3 | The Responsive Slick Slider WordPress plugin for WordPress is vulnerable to content injection in all versions up to, and… | — | wordfence | |
| c59c89da-f7d2-48a6-9489-824f542af804 | MEDIUM | 4.3 | The wp auto top plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2… | — | wordfence | |
| c594e139-98c7-4369-bc3f-e92564135cf7 | < 1.2.4 |
MEDIUM | 4.3 | The WP Subscription Forms β Subscription Form Plugin for WordPress plugin for WordPress is vulnerable to unauthorized … | — | wordfence |
| c58df44c-ec0a-4c61-b78c-a94d49be194c | < 3.0.9 |
MEDIUM | 4.3 | The Salient | Creative Multipurpose & WooCommerce Theme plugin for WordPress is vulnerable to unauthorized access due to… | — | wordfence |
| c57aaae7-435c-4bf9-8463-648e46103e88 | < 5.1.0 |
MEDIUM | 4.3 | The AI-Powered Business Directory and Classified Ads Listings β Listdom plugin for WordPress is vulnerable to unauthor… | — | wordfence |
| c579825b-e92e-48d2-925e-d1fc81374c4a | < 1.0.7 |
MEDIUM | 4.3 | The Really Simple Google Tag Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to,… | — | wordfence |
| c56ed896-9267-49e6-a207-fe5362fe18cd | < 2.1.5 |
MEDIUM | 4.3 | The OoohBoi Steroids for Elementor plugin for WordPress is vulnerable to missing authorization due to a missing capabili… | — | wordfence |
| c56234f3-7dd6-4dff-887d-5ddbf0cb7d3c | < 2.1.17 |
MEDIUM | 4.3 | The weDocs: AI Powered Knowledge Base, Docs, Documentation, Wiki & AI Chatbot plugin for WordPress is vulnerable to unau… | — | wordfence |
| c55ce1a2-f3e6-4fce-8a40-195a9739172e | < 7.0.2 |
MEDIUM | 4.3 | The WP SMS β Ultimate SMS & MMS Notifications, OTP, 2FA, and WooCommerce & Forms Integrations plugin for WordPress is … | — | wordfence |
| c54e5cd9-cc51-4367-afe0-11a6abfc0437 | < 4.0.5 |
MEDIUM | 4.3 | The Depicter plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions less than, or equal to, 4.0.4.… | — | wordfence |
| c54c1fab-634d-4d1a-8234-8f1ae41c7cd4 | < 3.12.3 |
MEDIUM | 4.3 | The Art Theme for WordPress is vulnerable to unauthorized access due to a missing capability check on the 'arttheme_them… | — | wordfence |
| c5429fb1-7072-4a00-8fb3-48d4f876417f | < 5.36.1 |
MEDIUM | 4.3 | The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to unauthorized access of functionality due to a… | — | wordfence |
| c53d4453-baf7-46b9-b019-d2be99c4a66e | MEDIUM | 4.3 | The CloudSearch plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.0.0… | — | wordfence | |
| c536261b-7a64-4aec-b326-aac0ac554f4b | MEDIUM | 4.3 | The PixelBeds Channel Manager and Hotel Booking Engine plugin for WordPress is vulnerable to Cross-Site Request Forgery … | — | wordfence | |
| c513e674-c027-4335-8ba3-b19696a1ce9b | < 6.1.3 |
MEDIUM | 4.3 | The The Events Calendar plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability ch… | — | wordfence |
| c506c0fb-d853-45d2-b6d5-9c3b1fa4f1e8 | < 2.5.7 |
MEDIUM | 4.3 | The Product Import Export for WooCommerce β Import Export Product CSV Suite plugin for WordPress is vulnerable to unau… | — | wordfence |
| c5033a86-540d-4a96-9ed4-838856096af3 | MEDIUM | 4.3 | The EditionGuard for WooCommerce β eBook Sales with DRM plugin for WordPress is vulnerable to Cross-Site Request Forge… | — | wordfence | |
| c4f291e0-6c99-43d8-830a-1ff90b496b18 | MEDIUM | 4.3 | The Salon Booking System, Appointment Scheduling for Salons, Spas & Small Businesses plugin for WordPress is vulnerable … | — | wordfence | |
| c4ee6753-3f1e-472e-9350-eea8de089bef | MEDIUM | 4.3 | The Imager for Elementor plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on … | — | wordfence | |
| c4e54002-a5c3-454b-806f-879e7f252b1c | < 1.3.1 |
MEDIUM | 4.3 | The SaasLauncher theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a functio… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →