πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

39,590
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 14, 2026
Last Updated

39,590 vulnerabilities found (page 226 of 1584)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
e6eafa5f-6352-49b1-8825-6ae32106f972 HIGH 8.1 The Brandfolder – Digital Asset Management Simplified. plugin for WordPress is vulnerable to Local File Inclusion in v… wordfence
e6e35ef6-4b65-47dc-9f5f-2df1f809aac6 HIGH 8.1 The UniTravel theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.4.2. This ma… wordfence
e6ba15f4-b4ca-4c32-9f4f-dc4a790a115f HIGH 8.1 The Yungen theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.0.12. This make… wordfence
e6b73447-1fce-4c04-bff9-aa942b7fef31 HIGH 8.1 The Medeus theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.14. This makes … wordfence
e683dd8c-4be5-4959-a301-1d82d3ee0780 HIGH 8.1 The Catwalk theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.4. This makes … wordfence
e6066890-75b9-468d-9f67-78e93f58dcc1
< 1.4.90
HIGH 8.1 The Motors – Car Dealership & Classified Listings Plugin plugin for WordPress is vulnerable to arbitrary file deletion… wordfence
e5be210c-9116-4529-90e3-70625a0c40ce
< 4.3.2.2
HIGH 8.1 The EventPrime – Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to PHP Object Injection in v… wordfence
e5a21053-76ac-4290-a466-cb74abae89a7
< 2.0.1
HIGH 8.1 The Cocco - Kids Store and Baby Shop WordPress Theme theme for WordPress is vulnerable to Local File Inclusion in versio… wordfence
e59085af-03da-4403-9804-6f8e8e7678b4
< 2.3.7
HIGH 8.1 The Favorites plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 2.3.6. This m… wordfence
e4fb4127-2b3f-4c8c-95ee-611f1bacf4c5
< 2.8.170
HIGH 8.1 The GeoDirectory – WP Business Directory Plugin and Classified Listings Directory plugin for WordPress is vulnerable t… wordfence
e4b2d8f5-409c-4964-aba3-ca2923fa8ffc HIGH 8.1 The EcoGrow theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.7. This makes … wordfence
e474d270-af61-4229-9b14-c96f3b1954e1 HIGH 8.1 The Geya - Renewable Energy & Ecology WordPress Theme theme for WordPress is vulnerable to Local File Inclusion in versi… wordfence
e44ec291-5fb3-4999-9def-c7c4b141fb0b HIGH 8.1 The Veil - Wedding & Photographer WordPress Theme theme for WordPress is vulnerable to Local File Inclusion in versions … wordfence
e419d65b-709e-4d24-bed9-2412c4c8423f
< 2.5.13
HIGH 8.1 The Urna theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 2.5.12. This makes … wordfence
e3db6046-26ea-405c-b31a-d0d3c5364506 HIGH 8.1 The Felizia | Fertility Center & Medical WordPress Theme theme for WordPress is vulnerable to Local File Inclusion in ve… wordfence
e3bb083c-af58-41f3-a14a-f45408e18d72
< 10.9.3.1
HIGH 8.1 The Thrive Quiz Builder plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 10.… wordfence
e3a0a46a-da56-4455-aa5d-28018fac4ce2
< 1.2.2
HIGH 8.1 The TopperPack – Complete Elementor Addons, Theme & CPT Builder plugin for WordPress is vulnerable to Local File Inclu… wordfence
e36e5c74-ccbe-46c7-885b-461bfd0b090b HIGH 8.1 The Cookie Monster plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.2.… wordfence
e2f92781-7c0b-4817-855f-b92ae7784e25 HIGH 8.1 The Stargaze theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.5. This makes… wordfence
e2c5b606-5852-48b5-8423-d428b390d0ef HIGH 8.1 The Jude theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.3.0. This makes i… wordfence
e27217de-be6d-4d00-9192-48cb81c8dccf HIGH 8.1 The Prowess - Fitness and Gym WordPress Theme theme for WordPress is vulnerable to Local File Inclusion in versions up t… wordfence
e21be94b-2a87-463f-b196-e4be466fb856 HIGH 8.1 The Extreme Store theme for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.5.7 via … wordfence
e1b4216f-f2b2-452b-a7b7-4a6c8a293b22
< 2.3.1
HIGH 8.1 The Aviana theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 2.1. This makes i… wordfence
e1ac8af3-bd42-4d58-b70b-b67e66a632ea
< 2.31
HIGH 8.1 The Ricky theme for WordPress is vulnerable to PHP Object Injection in versions up to 2.31 via deserialization of untrus… wordfence
e19f5f7b-6698-4275-a362-15e5441e0fa9
< 4.3.0
HIGH 8.1 The SureCart plugin for WordPress is vulnerable to privilege escalation via account takeover in versions up to, and incl… wordfence
← Prev 223 224 225 226 227 228 229 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top