πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,434
Total CVEs
66
CISA KEV (Actively Exploited)
Sep 1, 2026
Last Updated

40,434 vulnerabilities found (page 1553 of 1618)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
1f467dde-5b62-407e-bedb-9836630eaabe MEDIUM 4.3 The LinkedInclude plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.0… wordfence
1f404b2f-536d-4549-b74b-90b8bbd0edae
< 3.6.21
MEDIUM 4.3 The MasterStudy LMS WordPress Plugin – for Online Courses and Education plugin for WordPress is vulnerable to a race c… wordfence
1f38676b-270f-4b0f-bc98-a14a26b86a50
< 7.3.13
MEDIUM 4.3 The Zotpress plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check o… wordfence
1f2b4030-92b1-4795-b72e-761632dd523d
< 1.2.27
MEDIUM 4.3 The Flexible Wishlist for WooCommerce – Ecommerce Wishlist & Save for later plugin for WordPress is vulnerable to Cros… wordfence
1f1dcec6-1fcf-40e8-a15b-647b7161b6b5
< 3.1.10
MEDIUM 4.3 The Eupago Gateway For Woocommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, a… wordfence
1ef51ffb-df1e-442d-abc8-3a0308099a0b
< 3.42.0
MEDIUM 4.3 The Tag, Category, and Taxonomy Manager – AI Autotagger with OpenAI plugin for WordPress is vulnerable to unauthorized… wordfence
1eedab61-e94b-4793-8bf6-cfadd94a5778
< 2.0
MEDIUM 4.3 The Torod – The smart shipping and delivery portal for e-shops and retailers plugin for WordPress is vulnerable to Cro… wordfence
1ee7fe5f-0939-4604-99fb-2ddd06f30c88 MEDIUM 4.3 The LetterPress – Elevate Your WordPress Site's E-Mail Campaigns and Marketing plugin for WordPress is vulnerable… wordfence
1ee47f62-93f5-40ed-8c1d-555a21eb714a
< 3.7.0
MEDIUM 4.3 The Insert Pages WordPress plugin before 3.7.0 allows users with a role as low as Contributor to access content and meta… wordfence
1ee41498-f5c6-48c3-a0db-55a1fe6e7f92 MEDIUM 4.3 The infolinks Ad Wrap plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includ… wordfence
1ebe0767-db22-4995-bdf1-5ebb48f960e9 MEDIUM 4.3 The Quote Comments plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 3.0… wordfence
1ebb5d2c-2357-49a0-ac39-045cc1d4c0b3
< 1.1.2
MEDIUM 4.3 The ads.txt Guru Connect plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inc… wordfence
1eb25ef3-28ea-4f8f-932a-e90ca1914e8d
< 6.9.19
MEDIUM 4.3 The Advanced Access Manager – Restricted Content, Users & Roles, Enhanced Security and More plugin for WordPress is vu… wordfence
1e9fa1f8-5070-4e2f-a5ee-810eccf7ec4d
< 7.0.6
MEDIUM 4.3 The Ecwid Shopping Cart plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a… wordfence
1e9b094a-29ba-4be3-9033-fd915fae1820
< 3.8.1
MEDIUM 4.3 The Academy LMS – WordPress LMS Plugin for Complete eLearning Solution plugin for WordPress is vulnerable to Insecure … wordfence
1e93ce8c-5489-48e9-85a1-00ef897d0d74
< 2.6.9
MEDIUM 4.3 The Crawlomatic Multipage Scraper Post Generator plugin for WordPress is vulnerable to unauthorized access due to a miss… wordfence
1e8f0ef8-4916-4b62-a062-f169ba15448e
< 3.12.28
MEDIUM 4.3 The Easy Appointments plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and excl… wordfence
1e7bc0b1-a4ba-42f6-b6c9-0dcf2f8975ad
< 8.6.12
MEDIUM 4.3 The MapSVG plugin for WordPress is vulnerable to Path Traversal in all versions up to 8.6.12 (exclusive). This makes it … wordfence
1e72fd72-9771-442c-86d9-5dcc21df6c09
< 1.3.4
MEDIUM 4.3 The Cyr to Lat Reloaded – Transliteration of Links and File Names plugin for WordPress is vulnerable to unauthorized a… wordfence
1e716cf9-198c-4a32-883d-3f90dd399aee
< 2.3.0
MEDIUM 4.3 The Maintenance & Coming Soon Redirect Animation plugin for WordPress is vulnerable to unauthorized modification of data… wordfence
1e636fdd-6081-45f0-8e5d-71991ca7ed1a MEDIUM 4.3 The Simple Optimizer plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includi… wordfence
1e5a9cf2-2f1a-418c-99db-0c96077710eb
< 1.0.8
MEDIUM 4.3 The DEPART plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in … wordfence
1e567aec-07e5-494a-936d-93b40d3e3043
< 1.1.3
MEDIUM 4.3 The WP Fastest Cache plugin for WordPress is vulnerable to unauthorized data modification due to a missing capability ch… wordfence
1e5381fe-940b-404e-b2f2-1fd1c4ee5d78
< 2.3.9
MEDIUM 4.3 The Flexible Elementor Panel plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inc… wordfence
1e4e8960-b0c1-4dbb-ba97-e45b88fb06c0
< 1.1.6
MEDIUM 4.3 The BEAR – Bulk Editor and Products Manager Professional for WooCommerce by Pluginus.Net plugin for WordPress is vulne… wordfence
← Prev 1550 1551 1552 1553 1554 1555 1556 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top