πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,407
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 31, 2026
Last Updated

40,407 vulnerabilities found (page 1417 of 1617)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
b1971bb8-fb24-40f6-bbd8-60b5dc1f0822 MEDIUM 4.3 The WP Business Intelligence Lite plugin for WordPress is vulnerable to unauthorized access due to a missing capability … wordfence
b1922b16-e76c-4ee6-83ad-77970c8c25c0
< 4.0.20
MEDIUM 4.3 The ColorMag theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on… wordfence
b1850e16-6fac-4d72-9346-ea6280fe84d0
< 1.9.21
MEDIUM 4.3 The PPWP – Password Protect WordPress | #1 Most-Reviewed Password Plugin plugin for WordPress is vulnerable to Insecur… wordfence
b17fe3fe-1242-4109-93ad-cb654da1e6ca MEDIUM 4.3 The Clients plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in… wordfence
b16a9a96-9be2-40cd-95d4-e3ce118ce2e1 MEDIUM 4.3 The reCAPTCHA Jetpack plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includ… wordfence
b168f54a-fcc3-4832-bbb8-01b571ef0e4a
< 1.79.264
MEDIUM 4.3 The WP Fast Total Search – The Power of Indexed Search plugin for WordPress is vulnerable to unauthorized access due t… wordfence
b1613961-48ba-4f68-8f4f-36dd9d8861e4
< 2.8
MEDIUM 4.3 The Super block slider – Responsive image & content slider plugin for WordPress is vulnerable to unauthorized access d… wordfence
b15a2ddb-ed74-4ac3-8cfb-e8553dad90d6
< 4.3.1
MEDIUM 4.3 The Float menu WordPress plugin before 4.3.1 does not have CSRF check in place when deleting menu, which could allow att… wordfence
b156379a-fbb8-4fc0-9cc0-534b131bf785
< 1.9.1
MEDIUM 4.3 The Futurio Extra plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.9… wordfence
b148ad4e-afed-4f91-9dd6-343aff13945b
< 1.3.4
MEDIUM 4.3 The Lawyer Directory plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fu… wordfence
b140d228-cd74-4d78-8b9d-9a69e5a89bfb MEDIUM 4.3 The New Adman plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.6.8. … wordfence
b1312c34-45c6-41e5-b6fc-a45ac2c8a0ca
< 2.7.4
MEDIUM 4.3 The Bitly's WordPress Plugin plugin for WordPress is vulnerable to unauthorized modification of data due to a missi… wordfence
b128fa23-090e-4449-9202-a1db572e242d
< 3.4.11
MEDIUM 4.3 The ARMember plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the ARMembe… wordfence
b0fd8e7b-1985-4265-8e15-5b3988bb0225
< 5.8.5
MEDIUM 4.3 The AutomatorWP – Automator plugin for no-code automations, webhooks & custom integrations in WordPress plugin for Wor… wordfence
b0f62d05-84fb-4cd6-9e5f-0dcfa305ce68
< 2.5.8
MEDIUM 4.3 The Search Exclude plugin for WordPress is vulnerable to unauthorized modification of data due to a insufficient capabil… wordfence
b0e62351-bb73-4319-80f6-a1fa49e3dce2
< 1.9.2
MEDIUM 4.3 The Fluent Support – Helpdesk & Customer Support Ticket System plugin for WordPress is vulnerable to Cross-Site Reques… wordfence
b0d60991-0675-4efa-9427-380e6b59fe28
< 2.4.1
MEDIUM 4.3 The GSheet For Woo Importer plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability … wordfence
b0ceff94-e312-41da-acec-15d550aba792 MEDIUM 4.3 The SW Product Bundles plugin for WordPress is vulnerable to unauthorized access to functionality due to a missing capab… wordfence
b0b8c4c3-eba2-4c20-b790-48eceeba898e
< 1.4.1
MEDIUM 4.3 The Enable Accessibility plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includi… wordfence
b0b6677e-eeae-4456-b139-c63894b6304e MEDIUM 4.3 The Builder for Contact Form 7 by Webconstruct – Drag & Drop Contact Form Builder plugin for WordPress is vulnerable t… wordfence
b0ab9274-35c8-473b-accb-602e53816528
< 1.1.24
MEDIUM 4.3 The B Slider- Gutenberg Slider Block for WP plugin for WordPress is vulnerable to Information Exposure in all versions u… wordfence
b0a48c91-7e2c-4708-b5af-dfbcfea08f83
< 6.4.9
MEDIUM 4.3 The ElementsReady Addons for Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versi… wordfence
b09f97df-ee69-43aa-97b5-efc8ba16ef87 MEDIUM 4.3 The WP Filter & Combine RSS Feeds plugin for WordPress is vulnerable to unauthorized modification of data due to a missi… wordfence
b097aade-fdfa-4fb0-9921-67b0fc544490
< 1.3.4
MEDIUM 4.3 The MDTF – Meta Data and Taxonomies Filter plugin for WordPress is vulnerable to unauthorized access due to a missing … wordfence
b0955689-43a0-442c-974b-5db5e4171f6a
< 1.3.88
MEDIUM 4.3 The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Cross-Site Request Forgery in all version… wordfence
← Prev 1414 1415 1416 1417 1418 1419 1420 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top