Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,407 vulnerabilities found (page 1413 of 1617)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| b5ec03e9-06bb-4677-b480-4ebdb33acd08 | MEDIUM | 4.3 | The Caldera Forms Google Sheets Connector plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions u… | — | wordfence | |
| b5e0af52-3e38-4ff4-b53c-c7c35f1b956a | < 2.2.4 |
MEDIUM | 4.3 | The DHL eCommerce (Benelux) for WooCommerce plugin for WordPress is vulnerable to unauthorized modification and loss of … | — | wordfence |
| b5d787e9-b8b7-4ac1-a278-074afabc0239 | < 6.1.2 |
MEDIUM | 4.3 | The miniOrange 2-factor Authentication (2FA with SMS, Email, Google Authenticator) plugin for WordPress is vulnerable to… | — | wordfence |
| b5d4ef88-9cc6-4dd1-b232-c0d08387a328 | < 1.2.2 |
MEDIUM | 4.3 | The NanoCare theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in… | — | wordfence |
| b5c88472-0bb1-4bd9-9a72-154f0e95d104 | < 6.3.09 |
MEDIUM | 4.3 | The Use Any Font plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 6.3.… | — | wordfence |
| b5c43d68-8f6d-486e-8bb3-7de282fe96b3 | < 6.1.5 |
MEDIUM | 4.3 | The Modal Window plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 6.1.… | — | wordfence |
| b5bd3852-c1a5-4d7d-b4fb-59911fba4873 | < 6.2.0 |
MEDIUM | 4.3 | The WooCommerce Product Add-ons plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and … | — | wordfence |
| b5b2c17a-60e8-4960-bec5-e0c4d58df16b | < 2.2.9 |
MEDIUM | 4.3 | The Hotel Booking plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.2… | — | wordfence |
| b59e2773-31f0-4c19-b066-30982761bc44 | < 7.7.8 |
MEDIUM | 4.3 | The Themify Builder plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 7.7… | — | wordfence |
| b594b771-4d0b-46e1-b4c6-751c994992af | < 1.1.0 |
MEDIUM | 4.3 | The QuickSwish plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.0.9.… | — | wordfence |
| b58a9e6a-f12e-46d2-ab0d-75bc2e3a00b2 | < 1.0.9 |
MEDIUM | 4.3 | The Sweet Energy Efficiency plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and incl… | — | wordfence |
| b57dd8e3-e3e1-4d6b-b9dd-b5a24c4886b4 | < 1.1.4 |
MEDIUM | 4.3 | The Redirect Redirection plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabi… | — | wordfence |
| b57d3d1d-dcdb-4f11-82d8-183778baa075 | < 2.6.9 |
MEDIUM | 4.3 | The LightStart β Maintenance Mode, Coming Soon and Landing Page Builder plugin for WordPress is vulnerable to unauthor… | — | wordfence |
| b56abce9-82f8-4d73-bf97-cb1e2b65515b | < 4.2.5 |
MEDIUM | 4.3 | The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution β Build Your Own Amazon, eBay, Etsy plugin for Word… | — | wordfence |
| b56076bd-4a15-4857-9443-b36eed66d5c2 | MEDIUM | 4.3 | The GDPR Compliance plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and incl… | — | wordfence | |
| b55a80ed-5e27-4087-a792-e78066a41399 | < 3.5.3 |
MEDIUM | 4.3 | The Advanced Shipment Tracking plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and i… | — | wordfence |
| b559017c-f1d2-4f18-bfb6-e52f05910e34 | < 1.5.0 |
MEDIUM | 4.3 | The RateMyAgent Official plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inc… | — | wordfence |
| b55853e1-2f20-417f-b07e-eda758eaed32 | < 2.5.9 |
MEDIUM | 4.3 | The Custom Field Template plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ… | — | wordfence |
| b537637b-32c0-405e-94fa-c7c2d0c80658 | MEDIUM | 4.3 | The Marketing Optimizer plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and incl… | — | wordfence | |
| b5226241-dbf4-42e5-b9f4-77da125fa810 | < 2.10.3 |
MEDIUM | 4.3 | The Easy Digital Downloads plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inclu… | — | wordfence |
| b4df93a3-4366-4759-87d5-d4a648ea3b8b | < 0.1.2 |
MEDIUM | 4.3 | The Better Business Reviews β Trustpilot WordPress Plugin plugin for WordPress is vulnerable to unauthorized access du… | — | wordfence |
| b4cc839c-de7a-43eb-a7fa-b1049419bfa3 | < 3.0.1 |
MEDIUM | 4.3 | The Folders and Folders Pro plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and includi… | — | wordfence |
| b4bfd3d4-8454-4db2-b6fc-570bc7f99f36 | < 16.20.0 |
MEDIUM | 4.3 | The Echo Knowledge Base β Documentation, FAQs, Chat & Smart Search plugin for WordPress is vulnerable to unauthorized … | — | wordfence |
| b4bb2d72-ff31-4220-acb3-ed17bb9229b5 | < 1.1.3 |
MEDIUM | 4.3 | The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized data loss due to a missing capability check on t… | — | wordfence |
| b4a87db1-ac50-48e5-af6d-831d77b6f359 | MEDIUM | 4.3 | The Review Wave β Google Places Reviews plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versio… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →