πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

39,590
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 14, 2026
Last Updated

39,590 vulnerabilities found (page 227 of 1584)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
e1531e67-b698-4e53-a7a5-f97383b29983
< 1.0.19
HIGH 8.1 The Cloud SAML SSO - Single Sign On Login plugin for WordPress is vulnerable to Local File Inclusion in versions up to, … wordfence
e1298242-61d2-495e-bae7-96b5e12bd03d
< 1.3.9.0
HIGH 8.1 The Drag and Drop Multiple File Upload for Contact Form 7 plugin for WordPress is vulnerable to arbitrary file uploads d… wordfence
e1105717-134b-48cc-960d-f78437c06793 HIGH 8.1 The Restrict File Access plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inc… wordfence
e10a58c1-75fb-45ac-bcf3-0c120878dc79
< 1.1.5
HIGH 8.1 The MetaMax theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.1.4. This make… wordfence
e0554265-ebd0-4574-bba1-7836aebd2a09
< 2.6.34
HIGH 8.1 The Puca theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 2.6.33. This makes … wordfence
dfef6ee4-3794-453b-b2a1-92b6e462e1f8 HIGH 8.1 The Mahogany theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 2.9. This makes… wordfence
df9ae16b-396b-44b9-8bef-5cf766ae92c6 HIGH 8.1 The Rally theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.1. This makes it… wordfence
df62ed50-4d6b-41bb-bc16-395977d64745
< 1.2.4
HIGH 8.1 The WP Gravity Forms Keap/Infusionsoft plugin for WordPress is vulnerable to PHP Object Injection in all versions up to,… wordfence
df600822-3b95-4c57-9cf5-782e2a23ea8f
< 1.2
HIGH 8.1 The Manufaktur Solutions theme for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.1… wordfence
df153d11-6f9e-43c4-8e82-fe200461a813 HIGH 8.1 The Otaku theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.8.0. This makes … wordfence
df037656-5894-41f6-a50d-2f454205f95a
< 2.0.7
HIGH 8.1 The WooCommerce csv import export plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file… wordfence
df02079b-e1ec-40a9-abad-a37b2b9f5fd0 HIGH 8.1 The Lindo theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.2.5. This makes … wordfence
de7489e8-fe18-4a80-832c-aa62424c538b
< 5.1.17
HIGH 8.1 The Projectopia – WordPress Project Management plugin for WordPress is vulnerable to unauthorized modification of data… wordfence
de5d0356-197c-464e-9011-bb382680e9e6 HIGH 8.1 The TanTum theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.1.13. This make… wordfence
dde9f13e-797f-418b-b6ce-4f54f474bd0e HIGH 8.1 The Anderson theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.4.2. This mak… wordfence
dde2ab74-fe94-44fc-836c-be48ef0a042d HIGH 8.1 The Greenorganic theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 2.45. This … wordfence
ddd83877-739f-4c21-8179-20de8bbc4936
< 6.26.4
HIGH 8.1 The OAuth Single Sign On – SSO (OAuth Client) plugin for WordPress is vulnerable to authentication bypass in all versi… wordfence
ddcd86ba-97c2-4ce1-8721-210039338028
< 7.3.1.3
HIGH 8.1 The Uncanny Automator – Easy Automation, Integration, Webhooks & Workflow Builder Plugin plugin for WordPress is vulne… wordfence
ddbe9498-8379-413f-a271-a388b88aaf3a HIGH 8.1 The Nelson theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.2.0. This makes… wordfence
dd6fdc7f-10b9-40e7-a089-1efa2b64165e HIGH 8.1 The Algenix theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.0. This makes … wordfence
dd658a45-6fd7-4d4e-8a0e-7091accdb3ad HIGH 8.1 The UnlimHost theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.2.3. This ma… wordfence
dd182b9b-30c6-47cd-8e84-ea7caf1b25ee HIGH 8.1 The Edifice theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.8. This makes … wordfence
dd072cc6-cc32-40b2-af00-adef333d675a HIGH 8.1 The ThemeMakers Visual Content Composer plugin for WordPress is vulnerable to PHP Object Injection in versions up to, an… wordfence
dcf59d89-43e9-4bb2-be4f-9308698d1bb3
< 6.0.3.0
HIGH 8.1 The Community by PeepSo plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includin… wordfence
dc9900b1-9bac-442d-bb68-711ea9e27c38
< 1.8.5
HIGH 8.1 The SmilePure theme for WordPress is vulnerable to Local File Inclusion in versions up to 1.8.5. This makes it possible … wordfence
← Prev 224 225 226 227 228 229 230 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top