πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,407
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 31, 2026
Last Updated

40,407 vulnerabilities found (page 1421 of 1617)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
ad05b088-977e-4f24-b843-dc65f1aa60e9
< 2.1.4
MEDIUM 4.3 The Soumettre.fr plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability che… wordfence
acfdd579-0be9-476b-90cd-07f417712691
< 7.6.2
MEDIUM 4.3 The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress i… wordfence
acf93d4f-9105-4d6e-b89e-08c29188c77b MEDIUM 4.3 The Shiptimize for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capability che… wordfence
acda3276-7830-42c0-bc6e-0bc5510325e2
< 3.1.6
MEDIUM 4.3 The Payrexx Payment Gateway for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due … wordfence
acd6b604-45dd-4688-a9b9-fabb12c418e2 MEDIUM 4.3 The illi Link Party! plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includi… wordfence
acd55f15-43b6-481c-a3d2-3c29943caf69
< 1.4.3
MEDIUM 4.3 The Best Restaurant Menu by PriceListo plugin for WordPress is vulnerable to unauthorized access due to a missing capabi… wordfence
acd1d5c9-70fb-43e8-94de-6ddcf4612cea
< 8.1.1
MEDIUM 4.3 Cross-site request forgery (CSRF) vulnerability in the Search Everything plugin before 8.1.1 for WordPress allows remote… wordfence
acccc6ae-553d-4ed5-8ba9-06a9061d725c
< 1.0.7.5
MEDIUM 4.3 The Categorify plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check… wordfence
acc261eb-fafa-4e9d-b7ab-a449f14a7638
< 3.4.1.1
MEDIUM 4.3 The Watu Quiz plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including,… wordfence
acc0cb26-1199-4e71-91a5-340d80fafc24
< 4.5.14
MEDIUM 4.3 The WPML plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 4.5.13. This… wordfence
acba11a8-6313-4043-9ffd-6208228a7e7c MEDIUM 4.3 The Essential Real Estate plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, … wordfence
ac9c78bb-840e-49bd-96c0-a46cebb39c03 MEDIUM 4.3 The Booked - Appointment Booking for WordPress plugin for WordPress is vulnerable to unauthorized access due to a missin… wordfence
ac877f4f-d99c-4cd0-b438-916255a11b8a
< 0.2.44
MEDIUM 4.3 The ActiveDEMAND plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, … wordfence
ac7c0dde-5299-4938-beed-eb2fe227a812
< 1.1.3
MEDIUM 4.3 The SpeedyCache – Cache, Optimization, Performance plugin for WordPress is vulnerable to unauthorized modification of … wordfence
ac7a9adb-4ba1-4194-8218-e81a0fc9b93b
< 2.2.5
MEDIUM 4.3 A vulnerability in the getSelectedMimeTypesByRole function of the WP Upload Restriction WordPress plugin allows low-leve… wordfence
ac799e11-2f7b-43c2-88da-e77c075a958f
< 2.8.34
MEDIUM 4.3 The Filter & Grids plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including… wordfence
ac6f78a9-8fb0-4ea0-b02e-a0748723dca8
< 1.9.16
MEDIUM 4.3 The PPWP – Password Protect Pages plugin for WordPress is vulnerable to unauthorized access due to a missing capabilit… wordfence
ac6e7029-c0eb-45b1-b8c0-135d5db84ace MEDIUM 4.3 The Nirweb support plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a func… wordfence
ac646ea3-f5e5-4fe9-8e43-ceabbf3f3cc5 MEDIUM 4.3 The Advanced Search plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includin… wordfence
ac6432a4-6597-4d1e-b63d-c007a301d1b2
< 3.1.6
MEDIUM 4.3 The Folders – Unlimited Folders to Organize Media Library Folder, Pages, Posts, File Manager plugin for WordPress is v… wordfence
ac55e988-2b41-459b-9ab1-e5f9fdca203f
< 1.1.6
MEDIUM 4.3 The Button Block – Get fully customizable & multi-functional buttons plugin for WordPress is vulnerable to Sensitive I… wordfence
ac532bb8-9190-4091-898e-fe23c855164d
< 9.4
MEDIUM 4.3 The Emergency Password Reset plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inc… wordfence
ac5012f2-3518-41c0-befe-597008f22152
< 2.0.2
MEDIUM 4.3 The Prime Addons for Elementor plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up… wordfence
ac4a026b-ed1c-4864-8900-1d70d95af6f4 MEDIUM 4.3 The Ni Sales Commission For WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capab… wordfence
ac48e900-1e3e-4e97-8351-da1923fc1809 MEDIUM 4.3 The Appointify plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.0.8.… wordfence
← Prev 1418 1419 1420 1421 1422 1423 1424 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top