🛡️ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,434
Total CVEs
66
CISA KEV (Actively Exploited)
Sep 1, 2026
Last Updated

40,434 vulnerabilities found (page 1505 of 1618)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
53d39276-5d92-4a5b-848d-33aefb18a970
< 1.0.6
MEDIUM 4.3 The Coupon Zen plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.0.5.… wordfence
53d12736-56d3-454f-9593-74f758d0605d
< 1.8.0
MEDIUM 4.3 The Crowdsignal Forms plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a f… wordfence
53c25e24-fac6-404c-be6c-678a383b48a1
< 11.1.3
MEDIUM 4.3 The PixelYourSite – Your smart PIXEL (TAG) & API Manager plugin for WordPress is vulnerable to Cross-Site Request Forg… wordfence
53b97b06-5852-43ca-9585-61814247d3c9
< 2.6.41
MEDIUM 4.3 The Japanized for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, an… wordfence
53b3ac83-847d-4bd0-a79b-531af266e1b4
< 2.8.8
MEDIUM 4.3 The System Dashboard plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check… wordfence
53af9dfd-eb2d-4f6f-b02f-daf790b95f1f
< 7.6.12
MEDIUM 4.3 The wpDiscuz plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 7.6.11. … wordfence
53a265b8-e34c-4683-a653-4b4b2410e9de MEDIUM 4.3 The Social Share Boost plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including… wordfence
53a0749f-86e9-4f62-9de2-a6759c78ba2f MEDIUM 4.3 The TP Restore Categories And Taxonomies plugin for WordPress is vulnerable to Missing Authorization in all versions up … wordfence
53871750-6437-459f-97e1-5cf524160f09
< 2.0.14
MEDIUM 4.3 The Futurio Extra plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.0.1… wordfence
537be894-d9a2-414a-9b8b-004c73cecbf5
< 2.2.0
MEDIUM 4.3 The Melapress File Monitor plugin for WordPress is vulnerable to unauthorized access due to a missing capability check o… wordfence
53709d2c-6522-40f0-9dc4-82517d3ee7b2 MEDIUM 4.3 The WP Youtube Video Gallery plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and… wordfence
536a7b48-abb4-47b8-8665-e06363e2e867
< 6.3.2
MEDIUM 4.3 The Advanced Custom Fields PRO plugin for WordPress is vulnerable to unauthorized access due to a missing capability che… wordfence
53667fd6-0d12-400d-b3a1-7cee305a2bc2
< 1.1.4
MEDIUM 4.3 The Redirect Redirection plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includi… wordfence
535f1d8a-8266-4f90-82fa-9c32181bf277
< 2.0.0
MEDIUM 4.3 The Conditional Maintenance Mode for WordPress plugin for WordPress is vulnerable to Cross-Site Request Forgery in all v… wordfence
534fd39e-bc32-4534-b7cd-ee50161c0b13
< 2.12.2
MEDIUM 4.3 The Registrations for the Events Calendar plugin for WordPress is vulnerable to unauthorized modification of data due to… wordfence
533f71d5-823d-45eb-8ecf-76afafd2a5d3
< 1.18.1
MEDIUM 4.3 The Popup Maker plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.18.… wordfence
533ce011-0a14-4d06-bcf4-094c08d404f4
< 2.2.9
MEDIUM 4.3 The WP Docs plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in… wordfence
533bf4ba-5929-475e-ac98-43d97288cdfe
< 2.7.1
MEDIUM 4.3 The plugin Mailchimp for WooCommerce for WordPress is vulnerable to Server-Side Request Forgery via one of its AJAX acti… wordfence
5338cb06-ec30-4552-8939-b3135e53d65a MEDIUM 4.3 The Hello FSE theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a function i… wordfence
53282bec-cd47-4db4-8ffe-6647521c0d49 MEDIUM 4.3 The Bunny’s Print CSS plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and incl… wordfence
53234e29-5213-4acd-abfe-5c4ea5dbf829
< 1.3.1
MEDIUM 4.3 The Easy Email Subscription plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and … wordfence
5309e891-ced1-496f-8ee5-c089a91a7666
< 1.8.4
MEDIUM 4.3 The Alt Text Generator AI – Auto Generate & Bulk Update Alt Texts For Images plugin for WordPress is vulnerable to una… wordfence
5304da48-5d42-47ce-b1b1-dc04b8fa9dff
< 3.4.1
MEDIUM 4.3 The Shortlinks by Pretty Links plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and i… wordfence
52ddc55b-e853-4ca5-aa1c-4daec20dbb0a MEDIUM 4.3 The Uptime Robot Plugin for WordPress plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions u… wordfence
52d8a57c-c99b-4d10-b249-5ec2764a0e2d MEDIUM 4.3 The Fast Cache plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.5. T… wordfence
← Prev 1502 1503 1504 1505 1506 1507 1508 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top