πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,407
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 31, 2026
Last Updated

40,407 vulnerabilities found (page 1401 of 1617)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
c3c5a2b6-9df1-45e9-832d-53e4a397aebf
< 3.1.7
MEDIUM 4.3 The Advanced Database Cleaner – Optimize & Clean Database to Speed Up Site Performance plugin for WordPress is vulnera… wordfence
c3bdc0c4-34fb-43cc-ba2b-340347bca146
< 3.2.5
MEDIUM 4.3 The Easy Social Icons plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit… wordfence
c3bcc8aa-3c2d-4036-bdf5-7042d7aaa5d5
< 1.95.3
MEDIUM 4.3 The FluentBoards – Project Management, Task Management, Goal Tracking, Kanban Board, and, Team Collaboration plugin fo… wordfence
c39dc38c-1440-46f1-9b56-cc0711ae2b31
< 2.3.1
MEDIUM 4.3 The WPAdverts – Classifieds Plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capabili… wordfence
c399687c-bb00-4b72-a17f-e3bf04918259
< 3.7.28
MEDIUM 4.3 In WordPress before 4.9.9 and 5.x before 5.0.1, authors could bypass intended restrictions on post types via crafted inp… wordfence
c3978cb6-1739-4671-bb98-17c409c67d1c
< 1.8.0
MEDIUM 4.3 The Justified Gallery plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit… wordfence
c392750b-ae4a-48b5-9ccb-43852fb13e27 MEDIUM 4.3 The WP Quick FrontEnd Editor plugin for WordPress is vulnerable to Setting Changs in versions up to, and including, 5.5.… wordfence
c390192d-0c90-4877-914b-1af16783695f MEDIUM 4.3 The PAPERCITE plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function … wordfence
c38ac30d-95dc-415e-8ea6-507ed87d34db MEDIUM 4.3 The WP iCal Availability plugin for WordPress is vulnerable to unauthorized use of functionality due to a missing capabi… wordfence
c380b630-7378-43a9-8b8d-85d27b904ad4
< 8.4.1
MEDIUM 4.3 The Admin and Site Enhancements (ASE) plugin for WordPress is vulnerable to unauthorized access due to a missing capabil… wordfence
c3802a0a-92fe-4ae0-a0ca-05f82cf69101
< 7.8.8
MEDIUM 4.3 The Cornerstone plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a functio… wordfence
c367eaed-7e0f-4143-9c88-bc22622f3a77
< 3.2.12
MEDIUM 4.3 The Mail Baby SMTP plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.… wordfence
c35bffb2-f805-48d6-938a-cb5142eac3b1 MEDIUM 4.3 The Fontiran plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.1. Thi… wordfence
c357e34f-2d0f-4af4-bb67-cbbc6cd4e141
< 1.07
MEDIUM 4.3 The Hreflang Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includi… wordfence
c34ce601-5cf9-433f-bc9d-5c705eba6b08
< 10.41
MEDIUM 4.3 The Subscribe2 plugin for WordPress is vulnerable to unauthorized access to email functionality due to a missing capabil… wordfence
c34ca97f-d974-4ad1-b4a5-93613eb43a37
< 3.1.6
MEDIUM 4.3 The Content Slider Block plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including… wordfence
c3319993-6f2c-425d-8cb2-ab26f7a52139
< 1.1.9
MEDIUM 4.3 The Client Portal plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1… wordfence
c3277d93-4f47-445b-a193-ff990b55d054
< 3.1.13
MEDIUM 4.3 The Strong Testimonials plugin for WordPress is vulnerable to unauthorized modification of data due to an improper capab… wordfence
c31de209-e8fa-4bf6-bb29-d9a73ce0546b MEDIUM 4.3 The GetBookingsWP – Appointments Booking Calendar Plugin For WordPress plugin for WordPress is vulnerable to unauthori… wordfence
c3175913-8040-41e1-9f31-a63b03d7bad5
< 3.0.7
MEDIUM 4.3 The Lifetime free Drag & Drop Contact Form Builder for WordPress VForm plugin for WordPress is vulnerable to unauthorize… wordfence
c3114906-fac1-42b9-9ba1-0a5d44c2fb3a
< 5.0.5
MEDIUM 4.3 The SAML SP Single Sign On plugin for WordPress is vulnerable to unauthorized notice dismissal due to a missing capabili… wordfence
c30a4292-228a-483b-a443-0ccb1eca5a16 MEDIUM 4.3 The Kama Thumbnail plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.… wordfence
c2fd1bd8-dcc2-4c9a-be3f-b0a58992a239
< 3.2.4
MEDIUM 4.3 The PostX – Gutenberg Blocks for Post Grid plugin for WordPress is vulnerable to unauthorized access due to a missing … wordfence
c2f4ce08-934a-49d7-9994-82eed6935fda
< 3.1.0
MEDIUM 4.3 The RealHomes Memberships plugin for WordPress is vulnerable to Payment Bypass in versions up to, and including, 3.0.0. … wordfence
c2f209e1-4837-404b-8e3e-63a9d842a944
< 1.7.3
MEDIUM 4.3 The WP Social Comments plugin for WordPress is vulnerable to authorization bypass due to a missing capability check in t… wordfence
← Prev 1398 1399 1400 1401 1402 1403 1404 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top