πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,549
Total CVEs
66
CISA KEV (Actively Exploited)
Sep 2, 2026
Last Updated

40,549 vulnerabilities found (page 1580 of 1622)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
06daef36-0873-444f-88eb-3ede68f3afdd MEDIUM 4.3 The Social Auto Poster plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including… wordfence
06dac603-fd41-4401-88a9-5de87813e81a
< 3.0.2
MEDIUM 4.3 The Table Block by RioVizual plugin for WordPress is vulnerable to unauthorized access due to a missing capability check… wordfence
06ccfd81-065f-4151-97ea-dd6d4fc79337
< 3.0.3
MEDIUM 4.3 The Presto Player plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a funct… wordfence
06ac994a-1f49-4c7f-ba76-054deaf25c51
< 4.9.4
MEDIUM 4.3 The Schedule Post Changes With PublishPress Future: Unpublish, Delete, Change Status, Trash, Change Categories plugin fo… wordfence
069a56a1-ca17-43cc-a51f-51b6111f5b61
< 4.1.0
MEDIUM 4.3 The Prime Slider – Addons for Elementor plugin for WordPress is vulnerable to Server-Side Request Forgery in all versi… wordfence
068c7475-87b7-4c60-ad6b-c4d311075ff7
< 6.10.0
MEDIUM 4.3 The Uncanny Automator – Easy Automation, Integration, Webhooks & Workflow Builder Plugin plugin for WordPress is vulne… wordfence
067dde3a-f2d6-44c6-b64e-c8a850dd4d37
< 1.8.0
MEDIUM 4.3 The BuddyPress Builder for Elementor – BuddyBuilder plugin for WordPress is vulnerable to Information Exposure in all … wordfence
06781d74-ed45-432d-8d80-d90918b85e04
< 1.5.5
MEDIUM 4.3 The Smart Online Order for Clover plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to… wordfence
0660d753-177e-419a-9e81-3ee2d08cfbc0
< 3.8.2
MEDIUM 4.3 The WooCommerce Square plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabili… wordfence
065c25a0-1117-4230-a3f8-4e9d7db052b1
< 3.3.1
MEDIUM 4.3 The Cloudinary plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function… wordfence
0644cfb3-04ff-4c6f-8a1a-aa416f044e4e
< 2.6.19
MEDIUM 4.3 The Sender – Newsletter, SMS and Email Marketing Automation for WooCommerce plugin for WordPress is vulnerable to Cros… wordfence
0630956f-4add-45a7-95ae-657c90b6c2b7
< 3.5.4
MEDIUM 4.3 The Academy LMS plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a functio… wordfence
063021f1-aeaf-4acc-bdb7-f5ba7bc1313c
< 1.0.7
MEDIUM 4.3 The Feedbucket – Website Feedback Tool plugin for WordPress is vulnerable to Cross-Site Request Forgery in all version… wordfence
0629798c-ede2-43ac-9ec4-2cd99cd34ae2
< 6.4.3
MEDIUM 4.3 The MaxGalleria plugin for WordPress is vulnerable to unauthorized image upload due to a missing capability check on the… wordfence
062007c4-84ce-472e-b8e6-f255f6453a3a
< 9.3.4
MEDIUM 4.3 The Revive Old Posts plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a fu… wordfence
060ff8af-738f-448a-8aa9-bc00bc2bfbeb
< 2.0.0
MEDIUM 4.3 The Linked Variation for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to,… wordfence
06047667-2a24-4e1c-9389-11daceff4d23
< 9.9.9.4
MEDIUM 4.3 The Greenshift – animation and page builder blocks plugin for WordPress is vulnerable to Information Exposure in all v… wordfence
05ff8080-59e5-4d48-a69b-275a89eef758
< 1.5.3
MEDIUM 4.3 The Advanced Local Pickup for WooCommerce for WordPress is vulnerable to unauthorized access of AJAX actions due to a mi… wordfence
05f73a26-f637-4a1a-9f8c-98be8a146f00 MEDIUM 4.3 The Posts Navigation Links for Sections and Headings – Free by WP Masters plugin for WordPress is vulnerable to Cross-… wordfence
05ebdcca-ef90-4bbd-ac5e-05f57bf0c7d7 MEDIUM 4.3 The Featured Posts with Multiple Custom Groups (FPMCG) plugin for WordPress is vulnerable to Cross-Site Request Forgery … wordfence
05eb85a9-ee82-44d0-b9d4-a369e408dbd9 MEDIUM 4.3 The HL Twitter plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 20… wordfence
05e43452-66db-4184-a7bf-9f744b547b64
< 2.4.3
MEDIUM 4.3 The Clearfy Cache – WordPress optimization plugin, Minify HTML, CSS & JS, Defer plugin for WordPress is vulnerable to … wordfence
05dd3819-3566-43f6-a932-8931f51d6e8e MEDIUM 4.3 The Info Boxes Shortcode and Widget plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up … wordfence
05dd1686-76e3-498b-80b8-c4befc545fc8
< 3.6.0
MEDIUM 4.3 The Kadence Blocks β€” Page Builder Toolkit for Gutenberg Editor plugin for WordPress is vulnerable to unauthorized acce… wordfence
05cf8f25-d8ee-4208-aef9-0c4d995b7901
< 2.8.19
MEDIUM 4.3 The System Dashboard plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and inc… wordfence
← Prev 1577 1578 1579 1580 1581 1582 1583 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top