πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,407
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 31, 2026
Last Updated

40,407 vulnerabilities found (page 1461 of 1617)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
833f13b4-3180-475d-b924-b6cc3d4a99b6
< 3.3.4
MEDIUM 4.3 The CM Answers – Easy-to-use forum to grow your WP community plugin for WordPress is vulnerable to Cross-Site Request … wordfence
832ba0eb-6399-44d5-9055-9bb97f97095f
< 2.8.18
MEDIUM 4.3 The Brizy – Page Builder plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to 2.8.18… wordfence
8314f607-5904-4da8-b2a2-5d77e2edc764
< 15.7
MEDIUM 4.3 The WP GoToWebinar plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability c… wordfence
830a8e85-6134-4f85-996f-b0cb7ccb9d5c
< 2.4.10
MEDIUM 4.3 The PostX – Gutenberg Blocks for Post Grid WordPress plugin before 2.4.10, with Saved Templates Addon enabled, allows … wordfence
8305175b-2e61-49e3-847b-580a52a5c666
< 3.5.2
MEDIUM 4.3 The Notification for Telegram plugin for WordPress is vulnerable to unauthorized access due to a missing capability chec… wordfence
8302e390-35f5-4046-bab0-d5560d099681
< 1.4.6
MEDIUM 4.3 The Evergreen Content Poster – Auto Post and Schedule Your Best Content to Social Media plugin for WordPress is vulner… wordfence
82f4ad21-bc55-4daf-bc46-90969dcbabdd
< 1.45
MEDIUM 4.3 The We’re Open! plugin for WordPress is vulnerable to authorization bypass due to a missing capability checks on the a… wordfence
82f311a5-6ef3-4052-ab9d-fdb23f7b7406
< 1.6
MEDIUM 4.3 The QR Redirector WordPress plugin before 1.6 does not have capability and CSRF checks when saving bulk QR Redirector se… wordfence
82ea0ebc-08aa-4ef5-b6b1-c7c13715ef6d
< 4.9.2
MEDIUM 4.3 The Schedule Post Changes With PublishPress Future: Unpublish, Delete, Change Status, Trash, Change Categories plugin fo… wordfence
82de0a8c-2be9-4780-9d2e-1c6788be5249
< 0.7
MEDIUM 4.3 The Paid Memberships Pro - Membership Maps Add On plugin for WordPress is vulnerable to Sensitive Information Exposure i… wordfence
82d725a7-f4a8-4473-874b-496852a352cc
< 1.2
MEDIUM 4.3 The Dynamic URL SEO plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1… wordfence
82cfeff9-7079-408e-9c22-bae0d45000ed
< 2.1
MEDIUM 4.3 The My Contador lesr plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check… wordfence
82bc9997-0521-4023-bdf9-fcf0baec2642
< 2.0.0.78
MEDIUM 4.3 The Newses theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in v… wordfence
82b243c7-5b58-4765-9083-4660c0b479cc MEDIUM 4.3 The Sticky Action Buttons plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and in… wordfence
82aeab24-3467-4cb0-b71f-b7f97c26dc80
< 1.0.4
MEDIUM 4.3 The Taqnix plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.3.… wordfence
82a26836-44fc-47cf-ad09-bd3d264e8635
< 2.0.4
MEDIUM 4.3 The Welcome Bar plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.0.3… wordfence
827c5dc2-3195-47d9-9e44-ca2043748eed
< 2.4.14
MEDIUM 4.3 The Conditional Fields for Contact Form 7 plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions u… wordfence
826fe5a8-3290-4f70-b9bb-8bd4aec3634c
< 2.3.0
MEDIUM 4.3 The WooCommerce Product Recommendations plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up … wordfence
8250434a-2fad-4f44-9813-90e734d32d2e
< 1.1.4
MEDIUM 4.3 The Redirect Redirection plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability c… wordfence
8246ea9f-3ccb-4448-bf32-135c8140b09b MEDIUM 4.3 The Upload Resume plugin for WordPress is vulnerable to Sensitive Information Disclosure via the 'resume_upload_form_lis… wordfence
822d9f69-3422-431f-a838-a7bca508d156 MEDIUM 4.3 The WP MultiTasking – WP Utilities plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up… wordfence
822349d3-e712-48f5-949f-a0c720175788
< 5.1.9
MEDIUM 4.3 The Essential Real Estate plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ… wordfence
8222e290-1602-4f3d-b041-b3d24502dfee
< 1.4
MEDIUM 4.3 The Easy Digital Downloads Google Sheet Connector plugin for WordPress is vulnerable to Cross-Site Request Forgery in al… wordfence
821e763a-fe84-4471-99d0-515e036122c0
< 1.3.15
MEDIUM 4.3 The Icegram Collect – Easy Form, Lead Collection and Subscription plugin plugin for WordPress is vulnerable to unautho… wordfence
82002a9d-68a5-43fe-b46d-da4bf35b4e81
< 1.4.0
MEDIUM 4.3 The TOP Table Of Contents plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on… wordfence
← Prev 1458 1459 1460 1461 1462 1463 1464 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top