πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,549
Total CVEs
66
CISA KEV (Actively Exploited)
Sep 2, 2026
Last Updated

40,549 vulnerabilities found (page 1583 of 1622)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
038742d8-3da9-4e2a-bbd4-9ed6b31e8767 MEDIUM 4.3 The Fix My Feed RSS Repair plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inclu… wordfence
037b846f-3777-43ce-9895-b17203a4cbab
< 5.24
MEDIUM 4.3 The Trinity Audio – Text to Speech AI audio player to convert content into audio plugin for WordPress is vulnerable to… wordfence
0360ec6f-8a26-4499-ba62-0254e63a23ba
< 6.7.1.3
MEDIUM 4.3 The Quiz Maker plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 6.7.1.… wordfence
035d5f4a-1145-48e0-8388-e319088ebd52
< 1.6.0
MEDIUM 4.3 The VikBooking Hotel Booking Engine & PMS plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions u… wordfence
0359434b-9d88-4a40-8e9f-ec354c8de816
< 1.6.1
MEDIUM 4.3 The Download Read More Excerpt Link plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, … wordfence
034ba83f-4ee3-40f1-a41a-8b3d0055a1ba
< 3.8.3
MEDIUM 4.3 The Spreadsheet Integration plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and … wordfence
0344f49b-f5f9-4729-ade0-cba6289406de
< 3.11.5
MEDIUM 4.3 The BMLT WordPress Plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including… wordfence
033c0088-9562-46ee-9916-11a29162529b
< 3.5.4
MEDIUM 4.3 The Proxy & VPN Blocker plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a… wordfence
03354f47-ebf7-4242-89d0-1b937d418c6f
< 1.89.6
MEDIUM 4.3 The AFI – The Easiest Integration Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions … wordfence
032f3363-83c0-4548-81f0-724a71931add
< 1.1.77
MEDIUM 4.3 The WP Time Slots Booking Form plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and i… wordfence
032ec7ea-737c-4322-96ba-97d60cd2e08e MEDIUM 4.3 The Theme Editor plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.2.… wordfence
031a1203-6b0d-453b-be8a-12e7f55cb401
< 3.97
MEDIUM 4.3 The Under Construction plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including… wordfence
0318ec4a-185a-405d-90f8-008ba373114b
< 3.1.14
MEDIUM 4.3 The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to Cross-Site Request Forgery in all version… wordfence
03155b4e-a148-4990-8d47-ab77ae7736c5
< 1.0.4
MEDIUM 4.3 The ContentLock plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1… wordfence
03122c29-4ca5-426a-8240-74ce96dd21f2
< 5.7.9
MEDIUM 4.3 The JoomSport – for Sports: Team & League, Football, Hockey & more plugin for WordPress is vulnerable to Missing Autho… wordfence
030aa435-b9c3-4d82-86ea-ce3d4a266904 MEDIUM 4.3 The Acclectic Media Organizer plugin for WordPress is vulnerable to unauthorized access due to a missing capability chec… wordfence
02fd8469-cd99-42dc-9a28-c0ea08512bb0
< 5.4.9
MEDIUM 4.3 The WP EasyCart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.4.8… wordfence
02fa5b75-ea77-4ba7-979e-6db2bdeae3b5
< 3.7.0
MEDIUM 4.3 The BuddyPress Groups Extras plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and… wordfence
02e58374-e641-42f6-a718-cd364e38855c
< 4.0.7
MEDIUM 4.3 The Project Manager – AI Powered Project Management, Task Management, Kanban Board & Time Tracker plugin for WordPress… wordfence
02dcf609-e8ef-4ff5-a61e-6c513af04ca2
< 1.3.6
MEDIUM 4.3 The Remove Duplicate Posts plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capa… wordfence
02d11be0-2e2e-4c76-8a8e-f3f637b99809
< 0.3.0.8
MEDIUM 4.3 The WooCommerce Easy Duplicate Product plugin for WordPress is vulnerable to unauthorized modification of data due to a … wordfence
02b91de7-3d1f-46c7-9a76-f1200926149a MEDIUM 4.3 The Dashboard Widget Sidebar plugin for WordPress is vulnerable to unauthorized access due to a missing capability check… wordfence
02b7bbdf-5cb9-4206-bee5-3b43f0f862ea
< 3.6.2
MEDIUM 4.3 The Templately – Elementor & Gutenberg Template Library: 6500+ Free & Pro Ready Templates And Cloud! plugin for WordPr… wordfence
02b4dd72-7e6a-4430-bd75-f9dd3d6b0bf1 MEDIUM 4.3 The Munk Sites plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.0.7.… wordfence
02b336ce-be41-4343-9817-0437bd2685c2
< 3.3.4
MEDIUM 4.3 The MyBookTable Bookstore plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ… wordfence
← Prev 1580 1581 1582 1583 1584 1585 1586 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top