ðŸ›¡ï¸ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,434
Total CVEs
66
CISA KEV (Actively Exploited)
Sep 1, 2026
Last Updated

40,434 vulnerabilities found (page 1475 of 1618)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
745da883-c9f2-438c-8a22-bd3d1a729424
< 1.1.6
MEDIUM 4.3 The Button Block – Get fully customizable & multi-functional buttons plugin for WordPress is vulnerable to unauthorize… wordfence
745bd805-7b18-4633-ad5f-94d3a00e0807
< 1.8.2.0
MEDIUM 4.3 The Zoho CRM Lead Magnet plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on … wordfence
744354bc-3663-40bd-b799-589cb0978b40
< 2.4.2
MEDIUM 4.3 The Timetable and Event Schedule WordPress plugin before 2.4.2 does not have proper access control when deleting a times… wordfence
741d5cb6-0119-45a7-81df-400103d75c42
< 4.3.3
MEDIUM 4.3 The Smash Balloon Social Post Feed – Simple Social Feeds for WordPress plugin for WordPress is vulnerable to unauthori… wordfence
73f37502-6e11-4fba-802f-9b15ea9064ab
< 2.4.6
MEDIUM 4.3 The Product Size Charts Plugin for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missin… wordfence
73e2c5bd-c81d-48ee-a5fc-346dd820d0a4
< 4.5.2
MEDIUM 4.3 The WP Helper Premium plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including,… wordfence
73c6522a-cb95-4037-92e9-3dca0f52f538
< 1.8.0
MEDIUM 4.3 The Cooked – Recipe Management plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to,… wordfence
73b99342-65ca-4f63-b1ea-638255821265
< 1.10.28
MEDIUM 4.3 The Popup by Supsystic plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a … wordfence
73ad8840-b60f-4a92-b1c9-0996f78ab6b4
< 1.2.3
MEDIUM 4.3 The Theme Builder For Elementor plugin for WordPress is vulnerable to Information Exposure in all versions up to, and in… wordfence
73986641-b3a4-438d-90ae-6ff0f6f73f01 MEDIUM 4.3 The WP TFeed plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.6.9. T… wordfence
7394be7e-9a1f-4c85-ac2d-cace39def330
< 1.9.0
MEDIUM 4.3 The Location Picker at Checkout for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data … wordfence
738d266b-4bd4-4c0e-aac4-ef0ffeb33c45
< 5.1.9
MEDIUM 4.3 The Event Booking Manager for WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure in all ve… wordfence
738ad4c2-614a-4b60-b066-14d92ce25276
< 2.1.6.4
MEDIUM 4.3 The Civi Framework plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including… wordfence
7385e053-4741-4884-8ccb-2c0b6f3a40d8
< 3.1.0
MEDIUM 4.3 The SimplyRETS Real Estate IDX plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, a… wordfence
7374db91-4e7d-4db2-9c58-bb9bdda5c85d
< 8.7.3
MEDIUM 4.3 The Blog2Social: Social Media Auto Post & Scheduler plugin for WordPress is vulnerable to Sensitive Information Exposure… wordfence
735d6492-a17e-4440-9727-aacfed54b0ac
< 7.0.4
MEDIUM 4.3 The MLS Import plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 7.… wordfence
735d44ae-8072-48bb-a498-a0f130d1130b MEDIUM 4.3 The Widget Bundle plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including,… wordfence
73418252-ce07-4872-97ae-c6ea71c2105b
< 1.3.0
MEDIUM 4.3 The Serious Slider plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a func… wordfence
733c291d-b4d9-4e39-a093-877574913609 MEDIUM 4.3 The WP Compiler plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.0.0… wordfence
732d567d-5946-47b8-8228-9f5e75eab57e MEDIUM 4.3 The ListingPro plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… wordfence
7317ecf5-d43d-4080-ad2a-7644764dd41e
< 1.13.9
MEDIUM 4.3 The Elementor Addon Elements plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to,… wordfence
72fac756-6e43-4880-8328-c023429759f3
< 2.1.2
MEDIUM 4.3 The Under Construction, Coming Soon & Maintenance Mode plugin for WordPress is vulnerable to Cross-Site Request Forgery … wordfence
72f6b96e-cff4-414e-bbe8-6a244cc6feed
< 2.1.1
MEDIUM 4.3 The GenerateBlocks plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and inclu… wordfence
72e1bbd5-ffbf-4428-ac7e-82f18f2aa940 MEDIUM 4.3 The Criptopayer for Elementor plugin for WordPress is vulnerable to unauthorized access due to a missing capability chec… wordfence
72d18504-7b12-43f0-b2ea-40dbc25912c4
< 4.2.6
MEDIUM 4.3 The 多åˆä¸€æœç´¢è‡ªåŠ¨æŽ¨é€ç®¡ç†æ’ä»¶-支æŒBaidu/Google/Bing/IndexNow/Yandex/å¤´æ¡ plugin for WordPress is vulne… wordfence
← Prev 1472 1473 1474 1475 1476 1477 1478 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top