ðŸ›¡ï¸ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,407
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 31, 2026
Last Updated

40,407 vulnerabilities found (page 1420 of 1617)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
ae7d54a5-3952-4206-a5f4-be60aac27767
< 2.58
MEDIUM 4.3 The External Links plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.… wordfence
ae66f4e3-b9ca-4b76-9ada-ee8500cee5b1
< 2.5.13
MEDIUM 4.3 The Radio Station by netmix® – Manage and play your Show Schedule in WordPress! plugin for WordPress is vulnerable to… wordfence
ae643666-70cb-4eb4-a183-e1649264ded4
< 1.1.3
MEDIUM 4.3 The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized cache deletion in versions up to, and including,… wordfence
ae5121bd-2f3f-4d87-a2fd-d11bb9f8dc2c
< 1.3.5
MEDIUM 4.3 The WP Film Studio plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.… wordfence
ae2ac493-e6df-4083-8601-65635ad342b2
< 3.3.1
MEDIUM 4.3 The ELEX WordPress HelpDesk & Customer Ticketing System plugin for WordPress is vulnerable to unauthorized modification … wordfence
ae23f287-e4bb-4f97-aebe-18b6d7ad4e58
< 4.0.5
MEDIUM 4.3 The Popup and Slider Builder by Depicter – Add Email collecting Popup, Popup Modal, Coupon Popup, Image Slider, Carous… wordfence
adecdae5-2cb9-42f3-befb-3f5dc73ed5dc
< 3.7.8.1
MEDIUM 4.3 The Kadence Blocks — Page Builder Toolkit for Gutenberg Editor plugin for WordPress is vulnerable to Sensitive Informa… wordfence
ade64c1d-65e6-4424-b2da-dc63b49f08aa MEDIUM 4.3 The Check Plagiarism plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability… wordfence
ade377c4-c7aa-428d-b763-6e6fb6caee0c
< 2.4.7
MEDIUM 4.3 The Responsive Lightbox plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on t… wordfence
add7e759-5c8f-41a1-a4ae-29b154df61ed MEDIUM 4.3 The NIX Anti-Spam Light plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includin… wordfence
adc8926d-267e-49d5-83b2-68b390ca2d0a
< 1.3.2
MEDIUM 4.3 The ElementInvader Addons for Elementor plugin for WordPress is vulnerable to unauthorized access due to a missing capab… wordfence
adba7d0c-29ca-49c5-ac75-bb79d62f6107 MEDIUM 4.3 The Binary MLM Plan plugin for WordPress is vulnerable to insecure direct object reference in versions up to, and includ… wordfence
adb9e8e6-dceb-4d4b-b069-7f7479ab6b22 MEDIUM 4.3 The Referral Link Tracker plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on… wordfence
adb7155b-c520-4ede-ab4f-9735b9ff0815
< 1.5.0
MEDIUM 4.3 The Custom Layouts – Post + Product grids made easy plugin for WordPress is vulnerable to unauthorized access due to a… wordfence
adb70798-2ef9-4384-bcca-8862afa044ed MEDIUM 4.3 The WP RSS Images plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1… wordfence
ada8f195-ae5f-4f45-83b4-dd5b89e26ac9
< 4.11.0
MEDIUM 4.3 The Co-Authors, Multiple Authors and Guest Authors in an Author Box with PublishPress Authors plugin for WordPress is vu… wordfence
ad8bae39-1531-4224-8ff7-65d5f60078da MEDIUM 4.3 The Innovio - Multipurpose Landing Page WordPress Theme theme for WordPress is vulnerable to Insecure Direct Object Refe… wordfence
ad73f105-fea8-4bbe-946b-97e61b4b9e57 MEDIUM 4.3 The Buy one click WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missing c… wordfence
ad5bbf98-e7df-430d-8a02-ad252bf61b02
< 1.3.10
MEDIUM 4.3 The WordPress Header Builder Plugin – Pearl plugin for WordPress is vulnerable to Cross-Site Request Forgery in all ve… wordfence
ad430706-749f-4582-af07-6c543b8d5aad
< 1.7.5
MEDIUM 4.3 The Checkout Field Editor plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ… wordfence
ad427bea-1b0e-46bb-85fc-53c51fb40a17 MEDIUM 4.3 The WP Translitera plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, p1… wordfence
ad2c1ab6-5c78-4317-b5e7-c86e2eebeb4f
< 4.0.7
MEDIUM 4.3 The Essential Blocks plugin for WordPress is vulnerable to unauthorized use of functionality due to a missing capability… wordfence
ad2abd5b-3067-4dcd-a650-b543fa03437b
< 1.3.5
MEDIUM 4.3 The Youzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress plugin for WordPres… wordfence
ad0bd82d-db0e-440e-9cea-d3843525b0f0 MEDIUM 4.3 The Backend Localization plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includi… wordfence
ad09e91d-8ef8-49b2-84e8-fdbf28d65a8a
< 3.7.3
MEDIUM 4.3 The Import CSV or XML Datafeed With Ease plugin for WordPress is vulnerable to Cross-Site Request Forgery in all version… wordfence
← Prev 1417 1418 1419 1420 1421 1422 1423 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top