πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,434
Total CVEs
66
CISA KEV (Actively Exploited)
Sep 1, 2026
Last Updated

40,434 vulnerabilities found (page 1471 of 1618)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
78e35406-c416-4f7b-9241-34c2686788e3 MEDIUM 4.3 The Schema Lite theme for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.… wordfence
78e2001a-81e7-4fc6-a6cd-ee6afb4e4081
< 4.2.5.0
MEDIUM 4.3 The EventPrime – Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to Sensitive Information Exp… wordfence
78ce6a2a-aa28-4ae9-a2e7-ca3861a9677f MEDIUM 4.3 The Internal Link Building plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and i… wordfence
78c88402-52ca-44ff-8767-1f843fcb66fd
< 4.9
MEDIUM 4.3 The Oxygen Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability c… wordfence
78c6c5ff-8658-4a3d-be01-2141d1cff8bf
< 6.4.1
MEDIUM 4.3 The ARforms plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on… wordfence
78af081a-807b-48c8-82cd-f87fbef0fbe6 MEDIUM 4.3 The SVS Pricing Tables plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu… wordfence
78a5b2ab-4735-41b9-8807-8f98586cd3d7
< 5.6.3
MEDIUM 4.3 The The Plus Addons for Elementor Page Builder Lite plugin for WordPress is vulnerable to unauthorized access of data du… wordfence
787929b7-e8e0-4b24-9556-0198199c417f MEDIUM 4.3 The Analytics Reduce Bounce Rate plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to,… wordfence
7860dfa8-de76-4ca3-bd80-98550afab56b
< 1.10.0
MEDIUM 4.3 The Fluent Booking plugin for WordPress is vulnerable to unauthorized calendar import and management due to a missing ca… wordfence
7853c3e8-0c21-4681-a5b9-05ad2db02a7a MEDIUM 4.3 The REST API TO MiniProgram plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and … wordfence
78422a30-bdc6-4e7c-a018-c3dc4b4be6a0
< 1.0.7.5
MEDIUM 4.3 The Categorify plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.… wordfence
783e5794-0d74-4b7a-a1cd-2b834a50c50c
< 1.0.12
MEDIUM 4.3 The Reservation.Studio widget plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and in… wordfence
783ccf21-db16-4aac-9a3c-992b3aac5526
< 3.3.7
MEDIUM 4.3 The Ninja Forms - Excel Export plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up… wordfence
782e954f-1fdf-49fa-97bc-60f8fb8c4ecd
< 4.3.2
MEDIUM 4.3 The AWP Classifieds plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… wordfence
7822b102-e2c6-45f8-8800-8b932e473b9c MEDIUM 4.3 The OnionBuzz plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0… wordfence
77f18273-4507-49e6-b616-b37c89a64968
< 1.4.2
MEDIUM 4.3 The Subscription Renewal Reminders for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in a… wordfence
77f12178-dc92-41fe-a289-222e83f72a27
< 1.7.2
MEDIUM 4.3 The EPROLO Dropshipping plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabil… wordfence
77f0c100-1e33-4f18-80df-ed607faba5f7
< 4.8.4
MEDIUM 4.3 The Email Users plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions before 4.8.4. This is due t… wordfence
77d69631-9159-4619-9891-745dc2327e7c
< 2.21.2
MEDIUM 4.3 The ArtPlacer Widget plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check o… wordfence
77d56f61-7e45-405e-878d-fa3d53acede0
< 2.5.0
MEDIUM 4.3 The Kodex Posts likes plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including,… wordfence
77cb14b1-d9e5-4296-ad8c-6642327ef310 MEDIUM 4.3 The Remove slug from custom post type plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to… wordfence
77c8e65d-d7cc-43c5-9e8b-43c7d2e392f5 MEDIUM 4.3 The HORIZONTAL SLIDER plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including,… wordfence
77c77949-6feb-498a-80fc-d5a6fbb1e966
< 1.1.4
MEDIUM 4.3 The Delisho plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in… wordfence
77c25966-756d-47f6-a133-eeccdc2d86e7
< 2.3.9
MEDIUM 4.3 The VidMov - Video WordPress Theme theme for WordPress is vulnerable to Path Traversal in all versions up to, and includ… wordfence
77b57f2a-0b46-4b4a-bdca-1c5218d739ce
< 4.11.54
MEDIUM 4.3 The Premium Addons for Elementor plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to,… wordfence
← Prev 1468 1469 1470 1471 1472 1473 1474 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top