Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,434 vulnerabilities found (page 1471 of 1618)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| 78e35406-c416-4f7b-9241-34c2686788e3 | MEDIUM | 4.3 | The Schema Lite theme for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.… | — | wordfence | |
| 78e2001a-81e7-4fc6-a6cd-ee6afb4e4081 | < 4.2.5.0 |
MEDIUM | 4.3 | The EventPrime β Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to Sensitive Information Exp… | — | wordfence |
| 78ce6a2a-aa28-4ae9-a2e7-ca3861a9677f | MEDIUM | 4.3 | The Internal Link Building plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and i… | — | wordfence | |
| 78c88402-52ca-44ff-8767-1f843fcb66fd | < 4.9 |
MEDIUM | 4.3 | The Oxygen Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability c… | — | wordfence |
| 78c6c5ff-8658-4a3d-be01-2141d1cff8bf | < 6.4.1 |
MEDIUM | 4.3 | The ARforms plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on… | — | wordfence |
| 78af081a-807b-48c8-82cd-f87fbef0fbe6 | MEDIUM | 4.3 | The SVS Pricing Tables plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu… | — | wordfence | |
| 78a5b2ab-4735-41b9-8807-8f98586cd3d7 | < 5.6.3 |
MEDIUM | 4.3 | The The Plus Addons for Elementor Page Builder Lite plugin for WordPress is vulnerable to unauthorized access of data du… | — | wordfence |
| 787929b7-e8e0-4b24-9556-0198199c417f | MEDIUM | 4.3 | The Analytics Reduce Bounce Rate plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to,… | — | wordfence | |
| 7860dfa8-de76-4ca3-bd80-98550afab56b | < 1.10.0 |
MEDIUM | 4.3 | The Fluent Booking plugin for WordPress is vulnerable to unauthorized calendar import and management due to a missing ca… | — | wordfence |
| 7853c3e8-0c21-4681-a5b9-05ad2db02a7a | MEDIUM | 4.3 | The REST API TO MiniProgram plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and … | — | wordfence | |
| 78422a30-bdc6-4e7c-a018-c3dc4b4be6a0 | < 1.0.7.5 |
MEDIUM | 4.3 | The Categorify plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.… | — | wordfence |
| 783e5794-0d74-4b7a-a1cd-2b834a50c50c | < 1.0.12 |
MEDIUM | 4.3 | The Reservation.Studio widget plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and in… | — | wordfence |
| 783ccf21-db16-4aac-9a3c-992b3aac5526 | < 3.3.7 |
MEDIUM | 4.3 | The Ninja Forms - Excel Export plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up… | — | wordfence |
| 782e954f-1fdf-49fa-97bc-60f8fb8c4ecd | < 4.3.2 |
MEDIUM | 4.3 | The AWP Classifieds plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fun… | — | wordfence |
| 7822b102-e2c6-45f8-8800-8b932e473b9c | MEDIUM | 4.3 | The OnionBuzz plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0… | — | wordfence | |
| 77f18273-4507-49e6-b616-b37c89a64968 | < 1.4.2 |
MEDIUM | 4.3 | The Subscription Renewal Reminders for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in a… | — | wordfence |
| 77f12178-dc92-41fe-a289-222e83f72a27 | < 1.7.2 |
MEDIUM | 4.3 | The EPROLO Dropshipping plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabil… | — | wordfence |
| 77f0c100-1e33-4f18-80df-ed607faba5f7 | < 4.8.4 |
MEDIUM | 4.3 | The Email Users plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions before 4.8.4. This is due t… | — | wordfence |
| 77d69631-9159-4619-9891-745dc2327e7c | < 2.21.2 |
MEDIUM | 4.3 | The ArtPlacer Widget plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check o… | — | wordfence |
| 77d56f61-7e45-405e-878d-fa3d53acede0 | < 2.5.0 |
MEDIUM | 4.3 | The Kodex Posts likes plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including,… | — | wordfence |
| 77cb14b1-d9e5-4296-ad8c-6642327ef310 | MEDIUM | 4.3 | The Remove slug from custom post type plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to… | — | wordfence | |
| 77c8e65d-d7cc-43c5-9e8b-43c7d2e392f5 | MEDIUM | 4.3 | The HORIZONTAL SLIDER plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including,… | — | wordfence | |
| 77c77949-6feb-498a-80fc-d5a6fbb1e966 | < 1.1.4 |
MEDIUM | 4.3 | The Delisho plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in… | — | wordfence |
| 77c25966-756d-47f6-a133-eeccdc2d86e7 | < 2.3.9 |
MEDIUM | 4.3 | The VidMov - Video WordPress Theme theme for WordPress is vulnerable to Path Traversal in all versions up to, and includ… | — | wordfence |
| 77b57f2a-0b46-4b4a-bdca-1c5218d739ce | < 4.11.54 |
MEDIUM | 4.3 | The Premium Addons for Elementor plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to,… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →