πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,434
Total CVEs
66
CISA KEV (Actively Exploited)
Sep 1, 2026
Last Updated

40,434 vulnerabilities found (page 1507 of 1618)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
51e90226-48e4-493d-9e2c-a9d0dbb36286 MEDIUM 4.3 The Sliper for Elementor plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on … wordfence
51d07d2a-74e6-499e-8d66-90893faedeaf
< 1.6.5
MEDIUM 4.3 The Korea SNS plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.6.4. … wordfence
51ce7b71-0a19-48ef-8748-3848742c542b MEDIUM 4.3 The Clock In Portal plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2… wordfence
51ca835f-97cd-4711-b2a5-6090bd844b10
< 1.5
MEDIUM 4.3 The Elated Listing plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a func… wordfence
51c42ca2-cdba-49f5-bea2-83c9b8cf0db7
< 1.2.2
MEDIUM 4.3 The LuckyWP Scripts Control plugin for WordPress is vulnerable to unauthorized modification of data due to a missing cap… wordfence
51982774-5999-4f98-a635-3f099f779efb
< 1.33.5
MEDIUM 4.3 The WPS Bidouille plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to 1.33.5. Thi… wordfence
51925441-8849-4304-91fa-682a7624fd58 MEDIUM 4.3 The pro-watermark theme for WordPress is vulnerable to Path Traversal in all versions up to, and including, 2.0. This ma… wordfence
518b005d-5a5d-4fec-bb3a-1657af354ec9 MEDIUM 4.3 The Fontiran plugin for WordPress is vulnerable to unauthorized settings update due to a missing capability check on the… wordfence
5188dc72-a00d-4a07-b178-3f3ef26d7fc1
< 7.3.2
MEDIUM 4.3 The WPC Product Bundles for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up … wordfence
517f0c5e-7a73-475c-8676-9cd031ca6d9a MEDIUM 4.3 The Restaurant Menu and Food Ordering plugin for WordPress is vulnerable to unauthorized access due to a missing capabil… wordfence
5165a4db-9668-485c-83ec-92743ae1725b
< 2.3.0
MEDIUM 4.3 The Style Manager – Auto-magical system to style your entire WordPress site plugin for WordPress is vulnerable to Cros… wordfence
515e62ba-c3b8-42d0-95e3-be347b8851a5 MEDIUM 4.3 The BadgeOS plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on multi… wordfence
51560b6e-e926-4c3e-aa43-d604e7239a91
< 5.3.9
MEDIUM 4.3 The Classified Listing – AI-Powered Classified ads & Business Directory plugin for WordPress is vulnerable to Insecure… wordfence
515339da-c4dc-4bda-99b7-49f326ef2ab0
< 5.2.6
MEDIUM 4.3 The RSS Aggregator by Feedzy plugin for WordPress is vulnerable to unauthorized access in versions up to, and including,… wordfence
51118777-bdac-4a6b-a154-5a74a988a2e0
< 2.9.4.3
MEDIUM 4.3 The myCred – Points Management System For Gamification, Ranks, Badges, and Loyalty Rewards Program. plugin for WordPre… wordfence
510bef96-583d-4c0c-a6d4-355666efc1da
< 6.7.25
MEDIUM 4.3 The WCFM – Frontend Manager for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing… wordfence
50f69182-66c0-4d3a-aabe-015b72937f3e
< 4.6.2
MEDIUM 4.3 The WP Social AutoConnect plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ… wordfence
50f0f0d9-973d-4903-84aa-a1a68a5c19e2
< 3.92.1
MEDIUM 4.3 The Slider, Gallery, and Carousel by MetaSlider – Image Slider, Video Slider plugin for WordPress is vulnerable to Cro… wordfence
50e8811c-07b1-4325-92a4-dc1c91afbe9e MEDIUM 4.3 The Education Addon for Elementor plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions… wordfence
50d724a0-8fd3-415f-89f3-8e720802327c MEDIUM 4.3 The LessButtons Social Sharing and Statistics plugin for WordPress is vulnerable to Cross-Site Request Forgery in versio… wordfence
50d60e4f-7680-4ec0-9183-bdc8439679db MEDIUM 4.3 The Lafka - Multi Store Burger - Pizza & Food Delivery WooCommerce Theme theme for WordPress is vulnerable to unauthoriz… wordfence
50c8e549-f8ad-48ed-94db-abebe4bceeb4 MEDIUM 4.3 The Basic Interactive World Map plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, … wordfence
50b19d49-15d6-4285-af3b-00ff96bcb349
< 4.0.22
MEDIUM 4.3 The Ultimate Post Kit Addons for Elementor plugin for WordPress is vulnerable to unauthorized access due to a missing ca… wordfence
50ac89bd-43fc-4b21-8d29-b320d7aa587b
< 2.6.4
MEDIUM 4.3 The User Profile Picture plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and i… wordfence
509f29f5-d1a6-4bbb-b5f4-95ebfc2b306a MEDIUM 4.3 The customify-theme theme for WordPress is vulnerable to unauthorized access due to a missing capability check on a func… wordfence
← Prev 1504 1505 1506 1507 1508 1509 1510 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top