Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,407 vulnerabilities found (page 1438 of 1617)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| 9a9f93b1-aeb5-431e-b671-a3841a9cb70d | < 1.1.4 |
MEDIUM | 4.3 | The My Wp Brand β Hide menu & Hide Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all vers… | — | wordfence |
| 9a9f4fb7-92f5-4136-9ca3-cf7bf5c0b717 | < 1.6.18 |
MEDIUM | 4.3 | The ReviewX plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on… | — | wordfence |
| 9a79ac89-b3b4-4e84-b6a9-0f4695bf48ff | < 6.0.0.0 |
MEDIUM | 4.3 | The ProfileGrid plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a functio… | — | wordfence |
| 9a724287-5b9c-45cb-ab83-28d73ddc39ec | < 5.3.9 |
MEDIUM | 4.3 | The Classified Listing β AI-Powered Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to P… | — | wordfence |
| 9a70e291-1bc9-44ad-91a2-cf0624bb8d88 | < 1.1.4 |
MEDIUM | 4.3 | The Redirect Redirection plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includi… | — | wordfence |
| 9a6921b3-a0a1-4392-ba8d-d3fb6892c639 | < 3.0.0 |
MEDIUM | 4.3 | The Colissimo shipping methods for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in… | — | wordfence |
| 9a68e014-69df-4498-9cc2-618d966e5ed6 | MEDIUM | 4.3 | The Build App Online plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, … | — | wordfence | |
| 9a49b72f-9ad9-4338-aeeb-d81be58e1c15 | < 5.9.11 |
MEDIUM | 4.3 | The Meta Box β WordPress Custom Fields Framework plugin for WordPress is vulnerable to unauthorized access of data due… | — | wordfence |
| 9a322b84-93cf-4793-956f-c2e53574041c | < 9.2.0 |
MEDIUM | 4.3 | The Really Simple SSL plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including,… | — | wordfence |
| 9a31190f-e2ed-46ee-a224-85a0a003738d | < 6.4.0 |
MEDIUM | 4.3 | The Converter for Media β Optimize images | Convert WebP & AVIF plugin for WordPress is vulnerable to unauthorized mod… | — | wordfence |
| 9a268550-af65-405a-a16a-9083533e4acc | < 4.1.19 |
MEDIUM | 4.3 | The Church Admin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several … | — | wordfence |
| 9a184384-9162-4509-957b-d97dd4089856 | < 0.1.0.10 |
MEDIUM | 4.3 | The InstaWP Connect β 1-click WP Staging & Migration plugin for WordPress is vulnerable to unauthorized access of data… | — | wordfence |
| 9a1317bb-90fe-493c-9061-9597b3dd5534 | MEDIUM | 4.3 | The Trade Runner plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.14… | — | wordfence | |
| 9a129b7d-2732-4e4e-b168-98934f1c6ffe | < 33.0.17 |
MEDIUM | 4.3 | The PPOM β Product Addons & Custom Fields for WooCommerce plugin for WordPress is vulnerable to unauthorized access du… | — | wordfence |
| 9a0dc62c-786d-40f3-b9c9-bd199a176192 | < 28.0.0 |
MEDIUM | 4.3 | The Contest Gallery β Upload, Vote & Sell with PayPal and Stripe plugin for WordPress is vulnerable to CSV Injection i… | — | wordfence |
| 99f831f2-fb96-4dc8-ba3d-6015fbc7e2e1 | < 1.0.4 |
MEDIUM | 4.3 | The Contact Form 7 Redirect & Thank You Page plugin for WordPress is vulnerable to Cross-Site Request Forgery in version… | — | wordfence |
| 99edd858-5e2c-4cc5-adda-d8e70ddc86f6 | < 2.1.6 |
MEDIUM | 4.3 | The Tutor LMS Elementor Addons plugin for WordPress is vulnerable to unauthorized plugin installation due to a missing c… | — | wordfence |
| 99ed4989-6c30-4eb3-aba7-b7bbfb69a5c0 | MEDIUM | 4.3 | The WP SecureSubmit plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… | — | wordfence | |
| 99ed360a-5729-46ff-85ae-d5f9a2effe71 | MEDIUM | 4.3 | The WP-PostRatings Cheater plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and i… | — | wordfence | |
| 99e332d8-92a4-4643-a63c-3642bab0b007 | < 4.1.3 |
MEDIUM | 4.3 | The Flexible Checkout Fields for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing … | — | wordfence |
| 99cd7a8f-1d4b-4d9f-a08b-ec955842394b | MEDIUM | 4.3 | The Duplicate Content Cure plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inclu… | — | wordfence | |
| 99caa0fe-de80-4363-b7ed-d4324ac08e4e | < 0.1.4 |
MEDIUM | 4.3 | The Mizan Demo Importer plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a… | — | wordfence |
| 99c7eead-2cf2-4663-9328-671274f3c436 | < 1.1.5 |
MEDIUM | 4.3 | The Button Block β Get fully customizable & multi-functional buttons plugin for WordPress is vulnerable to Information… | — | wordfence |
| 99c31538-e500-4597-af3f-8505abf79e69 | < 2.7.13 |
MEDIUM | 4.3 | The Notifier β Send Notifications from Woocommerce, Form Plugins and More! plugin for WordPress is vulnerable to unaut… | — | wordfence |
| 99c07c94-39c1-4d13-9abe-78cf88daca2f | < 1.3.19 |
MEDIUM | 4.3 | The Icegram Collect β Easy Form, Lead Collection and Subscription plugin plugin for WordPress is vulnerable to unautho… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →