Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,407 vulnerabilities found (page 1462 of 1617)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| 81fd6ec4-9cff-4604-8b7f-5b8683096c34 | < 6.11.01 |
MEDIUM | 4.3 | The WP Compress β Image Optimizer [All-In-One] plugin for WordPress is vulnerable to Cross-Site Request Forgery in all… | — | wordfence |
| 81e6e266-078a-4f4f-a335-c9d388f41ef2 | < 1.36.0 |
MEDIUM | 4.3 | The Forminator Forms β Contact Form, Payment Form & Custom Form Builder plugin for WordPress is vulnerable to Cross-Si… | — | wordfence |
| 81d43850-c6aa-4340-a0e0-41e04e958848 | < 0.3.1 |
MEDIUM | 4.3 | The Folderly plugin for WordPress is vulnerable to unauthorized modification of data due to an insufficient capability c… | — | wordfence |
| 81cdb8b3-4e61-4f8d-af72-557e8435c7af | MEDIUM | 4.3 | The SEO Meta Description Updater plugin for WordPress is vulnerable to unauthorized access due to a missing capability c… | — | wordfence | |
| 81ab48c6-6add-4eb8-89a4-681af833fa11 | < 2.7.1 |
MEDIUM | 4.3 | The Variable Inspector plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a … | — | wordfence |
| 81a8e749-3ddf-4bf0-a2c3-578304fa0ba4 | MEDIUM | 4.3 | The Minimum Password Strength plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and in… | — | wordfence | |
| 819b3e0c-1cd0-45f9-8621-41817ad1de5e | < 2.3 |
MEDIUM | 4.3 | The Elementor Timeline Widget plugin for WordPress is vulnerable to unauthorized modification of data due to a missing c… | — | wordfence |
| 819580a0-75ea-475d-b6b8-47d57e5c3d05 | < 4.0.8 |
MEDIUM | 4.3 | The Nexter Blocks β WordPress Gutenberg Blocks & 1000+ Starter Templates plugin for WordPress is vulnerable to unautho… | — | wordfence |
| 8176dd33-80d2-4cc7-9edb-e1d7a1277f28 | < 1.2.4 |
MEDIUM | 4.3 | The Integration for WooCommerce and QuickBooks plugin for WordPress is vulnerable to Open Redirect in versions up to, an… | — | wordfence |
| 816f5fc1-e4e6-4c0d-b222-fe733f026e33 | < 3.4.2 |
MEDIUM | 4.3 | The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability… | — | wordfence |
| 8165196d-0117-473f-8ccf-57ffd3e08e16 | MEDIUM | 4.3 | The Top Friends plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0… | — | wordfence | |
| 81638472-b635-4100-8fb9-3daf35fa172e | < 1.2.2 |
MEDIUM | 4.3 | The When Last Login plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1… | — | wordfence |
| 8156eafc-5c76-43ef-8f39-1dd6e58c538c | < 0.1.4 |
MEDIUM | 4.3 | The Plugins Last Updated Column plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, … | — | wordfence |
| 8155585e-c29c-484c-ab2e-371b5723539e | < 0.7.0 |
MEDIUM | 4.3 | The Link Whisper Free plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includ… | — | wordfence |
| 81463022-c075-40e8-962d-b2ca27fd4f70 | < 0.5.1 |
MEDIUM | 4.3 | The Extra User Details plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including… | — | wordfence |
| 8141f6c1-f5f3-465e-94e8-f1df9b36ecf0 | MEDIUM | 4.3 | The TZ Plus Gallery plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includin… | — | wordfence | |
| 81378f24-4ecc-48db-86c9-c743ed77c743 | MEDIUM | 4.3 | The Awesome Logos plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.2… | — | wordfence | |
| 81258fcc-18cc-4614-a644-5cfb004d019b | < 1.4.0 |
MEDIUM | 4.3 | The HT Slider For Elementor plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and incl… | — | wordfence |
| 811f147e-5829-4f7e-91d8-9dba780950d5 | < 5.2.1 |
MEDIUM | 4.3 | The Classified Listing β AI-Powered Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to u… | — | wordfence |
| 8118a479-998c-4f43-9749-a5f251f13f85 | MEDIUM | 4.3 | The Product Notices for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up … | — | wordfence | |
| 810e0fad-38d5-42de-bc46-8176b7756ffd | MEDIUM | 4.3 | The RT-Theme 18 | Extensions plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inc… | — | wordfence | |
| 810adc9a-d4e1-46a8-89e4-22615cbbb9c6 | MEDIUM | 4.3 | The WP Captcha plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.0.0.… | — | wordfence | |
| 81099cdc-bce6-4ee6-b819-c3925acf96a8 | < 8.22.0 |
MEDIUM | 4.3 | The Google Analytics by Monster Insights plugin for WordPress is vulnerable to unauthorized access due to a missing cap… | — | wordfence |
| 810362b6-4145-4b2a-b50b-b4637852155f | MEDIUM | 4.3 | The Pardakht Delkhah plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, … | — | wordfence | |
| 80f92f7f-72e7-4d83-9ceb-ed0e11fb8003 | < 4.7.34 |
MEDIUM | 4.3 | WordPress Core is vulnerable to unauthorized site creation due to a missing check on the active signup policy in the 'gi… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →