πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,434
Total CVEs
66
CISA KEV (Actively Exploited)
Sep 1, 2026
Last Updated

40,434 vulnerabilities found (page 1476 of 1618)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
72c8be2b-b52a-47e5-91f7-aac1e89e00f3
< 1.3.52
MEDIUM 4.3 The Falang multilanguage plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includi… wordfence
72c66e71-dddb-4142-ae13-da3caffd8714
< 1.8.14
MEDIUM 4.3 The Qubely – Advanced Gutenberg Blocks plugin for WordPress is vulnerable to Sensitive Information Exposure in all ver… wordfence
72c04de6-78d2-4a45-834a-01ed879b528f
< 2.3.5
MEDIUM 4.3 The Visibility Logic for Elementor plugin for WordPress is vulnerable to unauthorized modification of data due to a miss… wordfence
72be8df6-7489-4214-af6e-d1d95f79fd8f
< 5.0.9
MEDIUM 4.3 The SchedulePress plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a funct… wordfence
72af8a37-f6c0-4353-ab27-1b671158ef5a
< 3.6.11
MEDIUM 4.3 The Image Photo Gallery Final Tiles Grid plugin for WordPress is vulnerable to unauthorized access due to a missing capa… wordfence
728aa62d-4853-4f55-9b77-82dfa6525b8a MEDIUM 4.3 The SR WP Minify HTML plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includ… wordfence
727a0649-082f-46d0-8d6f-de53ee7fb18e
< 8.0.8
MEDIUM 4.3 The Zip Recipes plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 8.0.7… wordfence
7273526e-bb51-418f-9ac8-8832f2de1cd6
< 1.9.15
MEDIUM 4.3 The Tumult Hype Animations plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability… wordfence
725f56f3-ea01-4b7b-92ec-aece92647697 MEDIUM 4.3 The Frontpage category filter plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, an… wordfence
7255319c-8175-4885-8f94-3f46f9e577a6
< 2.2.9
MEDIUM 4.3 The Super Progressive Web Apps plugin for WordPress is vulnerable to authorization bypass due to a missing capability ch… wordfence
7252075f-9326-4f04-bdd9-b244609c9cd3
< 5.87
MEDIUM 4.3 The Hitsteps Web Analytics plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inclu… wordfence
724d4bc4-f1b4-4038-a8eb-4dd557408d9c
< 1.8.3
MEDIUM 4.3 The WP Forms Signature Contract Add-On plugin for WordPress is vulnerable to unauthorized access due to a missing capabi… wordfence
72250c17-c3c4-47b7-ab3e-606d5a34449a
< 2.13.7
MEDIUM 4.3 The Modula Image Gallery – Photo Grid & Video Gallery plugin for WordPress is vulnerable to unauthorized access due to… wordfence
722261d0-b81c-48b9-baf3-93713a814c51 MEDIUM 4.3 The WP Meetup plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function … wordfence
72198b74-90f6-49c6-b261-6f9c1cdc9692
< 3.6.4.2
MEDIUM 4.3 The FunnelKit Automations – Email Marketing Automation and CRM for WordPress & WooCommerce plugin for WordPress is vul… wordfence
71fb1cef-6e01-4bd7-b0bc-5d21295f119a
< 5.6.7
MEDIUM 4.3 The ProfileGrid plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a functi… wordfence
71e951af-cb01-4c72-b113-e89539d29a4f
< 1.5.5
MEDIUM 4.3 The Barcode Scanner with Inventory & Order Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in v… wordfence
71caa071-d279-4807-88ad-a71673b9d17d
< 1.1.4
MEDIUM 4.3 The Redirect Redirection plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabi… wordfence
71b82f1e-14ae-4eb3-9b46-5fcea1cd5a32
< 1.6
MEDIUM 4.3 The Resource Library for Logged In Users plugin for WordPress is vulnerable to Cross-Site Request Forgery in all version… wordfence
71ae742a-3c91-476d-80d6-d39aad407afa MEDIUM 4.3 The Bluff Post plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.… wordfence
719de6e5-29c5-4303-981d-81840939a0b1
< 1.1.9
MEDIUM 4.3 The UltraAddons – Elementor Addons (Header Footer Builder, Custom Font, Custom CSS,Woo Widget, Menu Builder, Anywhere … wordfence
7192ec68-1903-498b-a142-b3be4c9544b1 MEDIUM 4.3 The Electron theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in… wordfence
719289ef-30a1-4582-99e2-5aee50b80e43 MEDIUM 4.3 The Kanban Boards for WordPress plugin for WordPress is vulnerable to unauthorized access due to a missing capability ch… wordfence
718e54f5-f040-42d6-958d-255d905615d5
< 1.23.3
MEDIUM 4.3 The Forminator plugin for WordPress is vulnerable to missing authorization due to a missing capability check on the 'loa… wordfence
718d7ea3-d8ba-46a0-9ab1-72657bd82c17
< 11.3.64
MEDIUM 4.3 The HubSpot All-In-One Marketing – Forms, Popups, Live Chat plugin for WordPress is vulnerable to Sensitive Informatio… wordfence
← Prev 1473 1474 1475 1476 1477 1478 1479 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top