πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,407
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 31, 2026
Last Updated

40,407 vulnerabilities found (page 1413 of 1617)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
b5ec03e9-06bb-4677-b480-4ebdb33acd08 MEDIUM 4.3 The Caldera Forms Google Sheets Connector plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions u… wordfence
b5e0af52-3e38-4ff4-b53c-c7c35f1b956a
< 2.2.4
MEDIUM 4.3 The DHL eCommerce (Benelux) for WooCommerce plugin for WordPress is vulnerable to unauthorized modification and loss of … wordfence
b5d787e9-b8b7-4ac1-a278-074afabc0239
< 6.1.2
MEDIUM 4.3 The miniOrange 2-factor Authentication (2FA with SMS, Email, Google Authenticator) plugin for WordPress is vulnerable to… wordfence
b5d4ef88-9cc6-4dd1-b232-c0d08387a328
< 1.2.2
MEDIUM 4.3 The NanoCare theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in… wordfence
b5c88472-0bb1-4bd9-9a72-154f0e95d104
< 6.3.09
MEDIUM 4.3 The Use Any Font plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 6.3.… wordfence
b5c43d68-8f6d-486e-8bb3-7de282fe96b3
< 6.1.5
MEDIUM 4.3 The Modal Window plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 6.1.… wordfence
b5bd3852-c1a5-4d7d-b4fb-59911fba4873
< 6.2.0
MEDIUM 4.3 The WooCommerce Product Add-ons plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and … wordfence
b5b2c17a-60e8-4960-bec5-e0c4d58df16b
< 2.2.9
MEDIUM 4.3 The Hotel Booking plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.2… wordfence
b59e2773-31f0-4c19-b066-30982761bc44
< 7.7.8
MEDIUM 4.3 The Themify Builder plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 7.7… wordfence
b594b771-4d0b-46e1-b4c6-751c994992af
< 1.1.0
MEDIUM 4.3 The QuickSwish plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.0.9.… wordfence
b58a9e6a-f12e-46d2-ab0d-75bc2e3a00b2
< 1.0.9
MEDIUM 4.3 The Sweet Energy Efficiency plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and incl… wordfence
b57dd8e3-e3e1-4d6b-b9dd-b5a24c4886b4
< 1.1.4
MEDIUM 4.3 The Redirect Redirection plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabi… wordfence
b57d3d1d-dcdb-4f11-82d8-183778baa075
< 2.6.9
MEDIUM 4.3 The LightStart – Maintenance Mode, Coming Soon and Landing Page Builder plugin for WordPress is vulnerable to unauthor… wordfence
b56abce9-82f8-4d73-bf97-cb1e2b65515b
< 4.2.5
MEDIUM 4.3 The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution – Build Your Own Amazon, eBay, Etsy plugin for Word… wordfence
b56076bd-4a15-4857-9443-b36eed66d5c2 MEDIUM 4.3 The GDPR Compliance plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and incl… wordfence
b55a80ed-5e27-4087-a792-e78066a41399
< 3.5.3
MEDIUM 4.3 The Advanced Shipment Tracking plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and i… wordfence
b559017c-f1d2-4f18-bfb6-e52f05910e34
< 1.5.0
MEDIUM 4.3 The RateMyAgent Official plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inc… wordfence
b55853e1-2f20-417f-b07e-eda758eaed32
< 2.5.9
MEDIUM 4.3 The Custom Field Template plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ… wordfence
b537637b-32c0-405e-94fa-c7c2d0c80658 MEDIUM 4.3 The Marketing Optimizer plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and incl… wordfence
b5226241-dbf4-42e5-b9f4-77da125fa810
< 2.10.3
MEDIUM 4.3 The Easy Digital Downloads plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inclu… wordfence
b4df93a3-4366-4759-87d5-d4a648ea3b8b
< 0.1.2
MEDIUM 4.3 The Better Business Reviews – Trustpilot WordPress Plugin plugin for WordPress is vulnerable to unauthorized access du… wordfence
b4cc839c-de7a-43eb-a7fa-b1049419bfa3
< 3.0.1
MEDIUM 4.3 The Folders and Folders Pro plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and includi… wordfence
b4bfd3d4-8454-4db2-b6fc-570bc7f99f36
< 16.20.0
MEDIUM 4.3 The Echo Knowledge Base – Documentation, FAQs, Chat & Smart Search plugin for WordPress is vulnerable to unauthorized … wordfence
b4bb2d72-ff31-4220-acb3-ed17bb9229b5
< 1.1.3
MEDIUM 4.3 The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized data loss due to a missing capability check on t… wordfence
b4a87db1-ac50-48e5-af6d-831d77b6f359 MEDIUM 4.3 The Review Wave – Google Places Reviews plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versio… wordfence
← Prev 1410 1411 1412 1413 1414 1415 1416 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top