πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,549
Total CVEs
66
CISA KEV (Actively Exploited)
Sep 2, 2026
Last Updated

40,549 vulnerabilities found (page 1581 of 1622)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
05cac571-6689-4a69-b600-3cfeaa1d3c47 MEDIUM 4.3 The Popup Cart Lite for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, … wordfence
05c2707c-c737-4f95-83e0-b0a4e0883d4b
< 2.0
MEDIUM 4.3 The Publish Confirm Message plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and incl… wordfence
05c1ee52-02c9-440b-9269-14ea8b73be45
< 3.41.0
MEDIUM 4.3 The Tag, Category, and Taxonomy Manager – AI Autotagger with OpenAI plugin for WordPress is vulnerable to authorizatio… wordfence
05b051bc-3b1c-412e-b3d0-98ff2c8bc06e
< 1.1.1
MEDIUM 4.3 The Pop ups, Exit intent popups, email popups, banners, bars, countdowns and cart savers – Promolayer plugin for WordP… wordfence
05adc3ce-209f-48ac-b5ef-8585bb9228ed
< 5.0.11
MEDIUM 4.3 The Dokan plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and including, 5.0.1… wordfence
05abc09f-903b-45a9-8cde-1bf8fd5d7d44
< 4.9.0
MEDIUM 4.3 The All in One SEO – Powerful SEO Plugin to Boost SEO Rankings & Increase Traffic plugin for WordPress is vulnerable t… wordfence
059f526f-6769-4092-92b0-2ef6248963ee
< 3.1.22
MEDIUM 4.3 The Icegram plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in… wordfence
05991bf2-ee61-4bf7-89df-c2f66db7caec
< 5.2.7
MEDIUM 4.3 The All-In-One Security (AIOS) – Security and Firewall plugin for WordPress is vulnerable to Cross-Site Request Forger… wordfence
05828bdc-74aa-4477-9178-f8cc6a34da42 MEDIUM 4.3 The CALL ME NOW plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.0. … wordfence
057ab824-8071-4c3c-9a57-f9a0043a9ad5
< 4.0.8
MEDIUM 4.3 The Feed Them Social plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, … wordfence
0576737d-8330-4a80-af70-4f0eab6657ed
< 3.0.0
MEDIUM 4.3 The WP Dummy Content Generator plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and i… wordfence
056819fb-7087-4794-9936-312ab54c96cd
< 1.3.9
MEDIUM 4.3 The Disable User Login plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including… wordfence
0563d2f0-fb29-4030-8d01-c257dda78241
< 1.2.35
MEDIUM 4.3 The Booking Calendar Contact Form plugin for WordPress is vulnerable to unauthorized modification of data due to a missi… wordfence
055b7ed5-268a-485e-ac7d-8082dc9fb2ad
< 1.0.1
MEDIUM 4.3 The Thumbnail Slider With Lightbox plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, a… wordfence
05379fe4-4924-4978-ad3f-a6208eee9d81
< 2.2.7
MEDIUM 4.3 The Review Schema – Review & Structure Data Schema Plugin plugin for WordPress is vulnerable to Sensitive Information … wordfence
052ea3af-96d8-4e83-b4e7-3db30b556d0d MEDIUM 4.3 The NextGen GalleryView plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includin… wordfence
052b345a-7b71-4de5-9bf8-8b81cc1b4e77
< 1.3
MEDIUM 4.3 The GDPR Compliance & Cookie Consent plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to,… wordfence
05144b8d-2dad-4a40-abe7-ecde837ec350
< 2.0.9
MEDIUM 4.3 The Extensions For CF7 plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including… wordfence
050ca18d-7596-4094-b24a-752857f5e478
< 4.5
MEDIUM 4.3 The WP BrowserUpdate plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, … wordfence
050647a8-6743-46e4-b31c-0b5bd4a1007f
< 2.6.2
MEDIUM 4.3 The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to Cross-Site Request Forgery … wordfence
050152d0-a99a-42ae-93fa-b6f9f1eddffc MEDIUM 4.3 The SP Project & Document Manager plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions… wordfence
04fd2d7a-fa75-4b9d-9514-5c24ca5ebc22
< 1.4.58
MEDIUM 4.3 The Motors – Car Dealer, Classifieds & Listing plugin for WordPress is vulnerable to unauthorized modification of data… wordfence
04f2ebf8-5721-4db7-8fc0-f2ae05e94239
< 1.1.13
MEDIUM 4.3 The Travelpayouts: All Travel Brands in One Place plugin for WordPress is vulnerable to Cross-Site Request Forgery in al… wordfence
04cd7528-65af-4280-a683-ffedf66a6940
< 2.32.0
MEDIUM 4.3 The PublishPress Capabilities plugin for WordPress is vulnerable to unauthorized access due to a missing capability chec… wordfence
04c84f52-7a97-4d86-ab9a-f8b9dfbd213b
< 2.3.2
MEDIUM 4.3 The WebToffee WooCommerce Product Feeds – Google Shopping, Pinterest, TikTok Ads, & More plugin for WordPress is vulne… wordfence
← Prev 1578 1579 1580 1581 1582 1583 1584 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top