🛡️ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

39,590
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 14, 2026
Last Updated

39,590 vulnerabilities found (page 237 of 1584)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
ab2c5cf1-f372-42d7-9a15-9148a3b4012c HIGH 8.1 The Bfres theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.2.1. This makes … wordfence
ab25bc80-60b9-4ca8-93ef-49c8731e8128
< 2.8
HIGH 8.1 The Wellspring theme for WordPress is vulnerable to Local File Inclusion in versions up to 2.8. This makes it possible f… wordfence
ab1c21dd-793c-4530-8c09-e1e8fed4a014 HIGH 8.1 The Frappé theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.8. This makes … wordfence
ab059000-56ab-4f73-8daa-b3d54e457742
< 2.1
HIGH 8.1 The PatioTime theme for WordPress is vulnerable to Local File Inclusion in versions up to 2.1. This makes it possible fo… wordfence
aad697c4-7bdf-4343-9200-147d47b7a553 HIGH 8.1 The Alliance theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 3.1.1. This mak… wordfence
aaab0d67-1cb4-426b-b6d9-c1b54fc1779f
< 1.1.5
HIGH 8.1 The Blueprint theme for WordPress is vulnerable to Local File Inclusion in versions up to 1.1.5. This makes it possible … wordfence
aa94e231-456f-4ccb-9eeb-aec9ba29694c HIGH 8.1 The Pearson Specter theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.11.3. … wordfence
aa7d798e-a9f0-445a-8776-b849d2d7cc5c HIGH 8.1 The Coleo theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.1.7. This makes … wordfence
aa5d75a4-7602-4fed-ab28-99aa18102c6c HIGH 8.1 The Pets Land theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.2.8. This ma… wordfence
aa46bdb3-6bbe-4f2f-8e1a-fbb54c5b39fd
< 3.5.33
HIGH 8.1 The Cost Calculator Builder plugin for WordPress is vulnerable to unauthorizedmodification of data due to a missing capa… wordfence
a9c08f2e-bffd-40a6-89f3-559cb34f4395
< 1.12.1
HIGH 8.1 The Product Input Fields for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads due to insufficien… wordfence
a9a02910-5674-4266-ab6e-7926bf6adecc
< 3.6.3
HIGH 8.1 The Miniorange OTP Verification with Firebase plugin for WordPress is vulnerable to privilege escalation due to a missin… wordfence
a96e58e6-7340-42e9-bdc3-585c46cb2104 HIGH 8.1 The Hobo theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.0.10. This makes … wordfence
a88fd2b0-1bd3-495a-9432-2f1b1034c4e4 HIGH 8.1 The Zentrum theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.0. This makes … wordfence
a8161eb7-d854-4f5c-a9f9-9f8163f79222
< 2.5.8
HIGH 8.1 The Urna theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 2.5.7. This makes i… wordfence
a7650da8-816d-4beb-a0e1-6ebd27bff7dd HIGH 8.1 The DiveIt theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.4.3. This makes… wordfence
a75e2086-6857-42e9-bf35-176d6f17f173 HIGH 8.1 The Gamezone theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.1.11. This ma… wordfence
a6fa6c56-f0bb-46ba-9c9e-0fc26a8c7450 HIGH 8.1 The Dwell theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.7.0. This makes … wordfence
a6dc7c65-894d-4b3e-a774-717330dd1dad HIGH 8.1 The SetSail theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.8. This makes … wordfence
a68d283b-7d3a-4df0-a936-a8aec2b778b7
< 4.14.5
HIGH 8.1 The Ajax Search Lite – Live Search & Filter plugin for WordPress is vulnerable to PHP Object Injection in versions up … wordfence
a5da4de0-249f-4983-9263-85c0ef731765 HIGH 8.1 The Kratz theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.0.12. This makes… wordfence
a5d495c0-9b06-4de8-b673-b2552780d5d1
< 1.1.7
HIGH 8.1 The Sala theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.1.6. This makes i… wordfence
a571f1c4-bc83-45fe-9c24-6712d8c3ec5a
< 2.2
HIGH 8.1 The Reina theme for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 2.1 via deserializ… wordfence
a567b932-7984-400b-bca0-8d2b0e4b1cb7
< 3.11.1
HIGH 8.1 The Ninja Forms – The Contact Form Builder That Grows With You plugin for WordPress is vulnerable to PHP Object Inject… wordfence
a5462bc3-1c7c-40b4-bab9-c895231d76e0 HIGH 8.1 The Rosalinda theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.2.3. This ma… wordfence
← Prev 234 235 236 237 238 239 240 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top