Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,407 vulnerabilities found (page 1417 of 1617)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| b1971bb8-fb24-40f6-bbd8-60b5dc1f0822 | MEDIUM | 4.3 | The WP Business Intelligence Lite plugin for WordPress is vulnerable to unauthorized access due to a missing capability … | — | wordfence | |
| b1922b16-e76c-4ee6-83ad-77970c8c25c0 | < 4.0.20 |
MEDIUM | 4.3 | The ColorMag theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on… | — | wordfence |
| b1850e16-6fac-4d72-9346-ea6280fe84d0 | < 1.9.21 |
MEDIUM | 4.3 | The PPWP β Password Protect WordPress | #1 Most-Reviewed Password Plugin plugin for WordPress is vulnerable to Insecur… | — | wordfence |
| b17fe3fe-1242-4109-93ad-cb654da1e6ca | MEDIUM | 4.3 | The Clients plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in… | — | wordfence | |
| b16a9a96-9be2-40cd-95d4-e3ce118ce2e1 | MEDIUM | 4.3 | The reCAPTCHA Jetpack plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includ… | — | wordfence | |
| b168f54a-fcc3-4832-bbb8-01b571ef0e4a | < 1.79.264 |
MEDIUM | 4.3 | The WP Fast Total Search β The Power of Indexed Search plugin for WordPress is vulnerable to unauthorized access due t… | — | wordfence |
| b1613961-48ba-4f68-8f4f-36dd9d8861e4 | < 2.8 |
MEDIUM | 4.3 | The Super block slider β Responsive image & content slider plugin for WordPress is vulnerable to unauthorized access d… | — | wordfence |
| b15a2ddb-ed74-4ac3-8cfb-e8553dad90d6 | < 4.3.1 |
MEDIUM | 4.3 | The Float menu WordPress plugin before 4.3.1 does not have CSRF check in place when deleting menu, which could allow att… | — | wordfence |
| b156379a-fbb8-4fc0-9cc0-534b131bf785 | < 1.9.1 |
MEDIUM | 4.3 | The Futurio Extra plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.9… | — | wordfence |
| b148ad4e-afed-4f91-9dd6-343aff13945b | < 1.3.4 |
MEDIUM | 4.3 | The Lawyer Directory plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fu… | — | wordfence |
| b140d228-cd74-4d78-8b9d-9a69e5a89bfb | MEDIUM | 4.3 | The New Adman plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.6.8. … | — | wordfence | |
| b1312c34-45c6-41e5-b6fc-a45ac2c8a0ca | < 2.7.4 |
MEDIUM | 4.3 | The Bitly's WordPress Plugin plugin for WordPress is vulnerable to unauthorized modification of data due to a missi… | — | wordfence |
| b128fa23-090e-4449-9202-a1db572e242d | < 3.4.11 |
MEDIUM | 4.3 | The ARMember plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the ARMembe… | — | wordfence |
| b0fd8e7b-1985-4265-8e15-5b3988bb0225 | < 5.8.5 |
MEDIUM | 4.3 | The AutomatorWP β Automator plugin for no-code automations, webhooks & custom integrations in WordPress plugin for Wor… | — | wordfence |
| b0f62d05-84fb-4cd6-9e5f-0dcfa305ce68 | < 2.5.8 |
MEDIUM | 4.3 | The Search Exclude plugin for WordPress is vulnerable to unauthorized modification of data due to a insufficient capabil… | — | wordfence |
| b0e62351-bb73-4319-80f6-a1fa49e3dce2 | < 1.9.2 |
MEDIUM | 4.3 | The Fluent Support β Helpdesk & Customer Support Ticket System plugin for WordPress is vulnerable to Cross-Site Reques… | — | wordfence |
| b0d60991-0675-4efa-9427-380e6b59fe28 | < 2.4.1 |
MEDIUM | 4.3 | The GSheet For Woo Importer plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability … | — | wordfence |
| b0ceff94-e312-41da-acec-15d550aba792 | MEDIUM | 4.3 | The SW Product Bundles plugin for WordPress is vulnerable to unauthorized access to functionality due to a missing capab… | — | wordfence | |
| b0b8c4c3-eba2-4c20-b790-48eceeba898e | < 1.4.1 |
MEDIUM | 4.3 | The Enable Accessibility plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includi… | — | wordfence |
| b0b6677e-eeae-4456-b139-c63894b6304e | MEDIUM | 4.3 | The Builder for Contact Form 7 by Webconstruct β Drag & Drop Contact Form Builder plugin for WordPress is vulnerable t… | — | wordfence | |
| b0ab9274-35c8-473b-accb-602e53816528 | < 1.1.24 |
MEDIUM | 4.3 | The B Slider- Gutenberg Slider Block for WP plugin for WordPress is vulnerable to Information Exposure in all versions u… | — | wordfence |
| b0a48c91-7e2c-4708-b5af-dfbcfea08f83 | < 6.4.9 |
MEDIUM | 4.3 | The ElementsReady Addons for Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versi… | — | wordfence |
| b09f97df-ee69-43aa-97b5-efc8ba16ef87 | MEDIUM | 4.3 | The WP Filter & Combine RSS Feeds plugin for WordPress is vulnerable to unauthorized modification of data due to a missi… | — | wordfence | |
| b097aade-fdfa-4fb0-9921-67b0fc544490 | < 1.3.4 |
MEDIUM | 4.3 | The MDTF β Meta Data and Taxonomies Filter plugin for WordPress is vulnerable to unauthorized access due to a missing … | — | wordfence |
| b0955689-43a0-442c-974b-5db5e4171f6a | < 1.3.88 |
MEDIUM | 4.3 | The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Cross-Site Request Forgery in all version… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →