πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,434
Total CVEs
66
CISA KEV (Actively Exploited)
Sep 1, 2026
Last Updated

40,434 vulnerabilities found (page 1490 of 1618)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
63fe6e87-1da1-47c8-8d2a-e95b4eb69811
< 1.5.5
MEDIUM 4.3 The Copy & Delete Posts plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a… wordfence
63fb6727-8225-481c-8252-0224577a9560 MEDIUM 4.3 The Regenerate post permalink plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and in… wordfence
63f47b55-760e-4dbe-891f-a32685c7e3d5
< 1.1.3
MEDIUM 4.3 The Local google fonts, host google fonts locally by Easyfonts plugin for WordPress is vulnerable to Cross-Site Request… wordfence
63f2e02c-baa4-446c-bf1c-96ce099ad02e
< 1.32.0
MEDIUM 4.3 The Web Stories for WordPress plugin for WordPress is vulnerable to authorization bypass in versions up to, and includin… wordfence
63ecb518-50d6-49ad-92e4-c5a7494ced82
< 1.5.6.1
MEDIUM 4.3 The RevivePress – Keep your Old Content Evergreen plugin for WordPress is vulnerable to unauthorized access and modifi… wordfence
63ea8485-8a3f-4d83-91ee-85591077464f
< 3.1.6
MEDIUM 4.3 The Templately plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check… wordfence
63ddf445-7b48-48f3-b097-bd7991216c3f
< 1.11.12
MEDIUM 4.3 The Adminimize plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… wordfence
63ab255f-e061-447b-a2b6-21a85eed9d57
< 3.8.10
MEDIUM 4.3 The WooCommerce Ship to Multiple Addresses plugin for WordPress is vulnerable to unauthorized action due to a missing ca… wordfence
63ab02c1-baeb-4fd1-a527-4287d0b17a03
< 2.8.12
MEDIUM 4.3 The GetPaid plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the c… wordfence
63a6456d-2062-47eb-9652-ff013472b00c MEDIUM 4.3 The Sirat theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in al… wordfence
639f3941-7783-4500-aca4-5e8155db6460
< 1.1.4
MEDIUM 4.3 The BEAR for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.3.3. This is du… wordfence
6373a69d-5cf2-4174-9c02-0c137f8397b6 MEDIUM 4.3 The Eagle Booking plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and incl… wordfence
636bd8ce-4737-4117-9581-42c7dcb3ad22
< 1.6.3
MEDIUM 4.3 The Primary Addon for Elementor plugin for WordPress is vulnerable to Information Exposure in all versions up to, and in… wordfence
63666c16-9f68-4a27-b163-4c25f0a7589e
< 1.0.74
MEDIUM 4.3 The 10Web Map Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit… wordfence
635f448b-5c51-4152-b6f5-076a686709bf MEDIUM 4.3 The Rocket Font plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.2.3… wordfence
6358fc29-5b09-481a-9040-a7890b61f419
< 7.1.1
MEDIUM 4.3 The Amministrazione Trasparente plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and … wordfence
6340984d-143e-45af-bd30-2df1ce943fc9 MEDIUM 4.3 The 6Storage Rentals plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fu… wordfence
633f5575-315e-46ef-ba92-8eae11a546b9
< 4.4.0
MEDIUM 4.3 The Responder plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4.3… wordfence
63370972-a6cb-40ed-91f2-4f469dc5335b MEDIUM 4.3 The TinyMCE Professional Formats and Styles plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions… wordfence
632e2424-d4e0-456a-aff6-b575f5bf8405 MEDIUM 4.3 The WP Media Categories plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includin… wordfence
632c0a1a-6ac2-44c3-b66c-44fa4cf05b2d
< 3.2.22
MEDIUM 4.3 The Photo Gallery, Images, Slider in Rbs Image Gallery plugin for WordPress is vulnerable to unauthorized access of data… wordfence
632431eb-ea78-4c93-ac79-2cb92b5746c6
< 2.0.3
MEDIUM 4.3 The RTMKit Addons for Elementor plugin for WordPress is vulnerable to unauthorized modification of data due to missing c… wordfence
631a514a-188e-45ce-9f5f-01855b9fa361 MEDIUM 4.3 The WooCommerce Bulk Product Editor plugin for WordPress is vulnerable to unauthorized access due to a missing capabilit… wordfence
6315e218-c547-4d10-b26c-9a9f4a70f8ba
< 4.5.4
MEDIUM 4.3 The KiviCare – Clinic & Patient Management System (EHR) plugin for WordPress is vulnerable to unauthorized access in a… wordfence
6314f5ce-4f19-4b04-b9d9-15874e792208 MEDIUM 4.3 The Slides & Presentations plugin for WordPress is vulnerable to unauthorized access due to a missing capability check o… wordfence
← Prev 1487 1488 1489 1490 1491 1492 1493 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top