πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

39,590
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 14, 2026
Last Updated

39,590 vulnerabilities found (page 240 of 1584)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
9ae10993-4365-434e-b1e4-b20f2398c2e1 HIGH 8.1 The Melody theme for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.6.3 via deseria… wordfence
9adfe6f3-5ecb-4d5d-b104-4d6d7367b0e3 HIGH 8.1 The Buisson theme for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.1.11 via deser… wordfence
9aaea0a2-3ec4-4c67-8c81-7ec7a879bbfe HIGH 8.1 The Sanger theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.24.0. This make… wordfence
9a8a3607-4f2e-44fb-8141-75f7620508d4
< 4.22.0
HIGH 8.1 The Kallyas theme for WordPress is vulnerable to arbitrary folder deletion due to insufficient file path validation in t… wordfence
9a841e14-c96f-43ec-a1bf-42d5672c9e34
< 1.5
HIGH 8.1 The SEOPress for MainWP plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.4… wordfence
9a61ccdc-a681-4084-bc42-df7e989fdbb1 HIGH 8.1 The Woo Hoo theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.25. This makes… wordfence
9a2c6c4a-15ac-40ab-9571-64a355a89e0c HIGH 8.1 The EmojiNation theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.0.12. This… wordfence
99e1f537-2c50-4115-9cf3-5a8809f45e54
< 1.2.27
HIGH 8.1 The PressMart theme for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.2.26 via des… wordfence
99d72d71-ff0a-45ea-8126-279baa8bbf3c HIGH 8.1 The Responsive Sidebar plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.2.… wordfence
99c71994-baf5-43e7-986c-8bcb7e365567
< 2.0.23
HIGH 8.1 The Thegov Core plugin for WordPress is vulnerable to Local File Inclusion in versions up to 2.0.23. This makes it possi… wordfence
998542fd-dc5d-4a11-b41f-d94be697eda0 HIGH 8.1 The Muzicon theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.9.0. This make… wordfence
9984bdef-a9e8-489d-9912-12de57c6920d HIGH 8.1 The Healer - Doctor, Clinic & Medical WordPress theme for WordPress is vulnerable to Local File Inclusion in versions up… wordfence
99747020-80a4-4ce0-85a2-cc8cdbd9a676 HIGH 8.1 The Nexa Blocks – Gutenberg Blocks, Page Builder for Gutenberg Editor & FSE plugin for WordPress is vulnerable to PHP … wordfence
9967a945-8ea2-4b6c-a15e-1bcbca4c6490 HIGH 8.1 The WooMulti plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in t… wordfence
99643669-373e-4bee-9588-e3dd04e43c01
< 1.2
HIGH 8.1 The Belfort theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.0. This makes … wordfence
9963e055-17f8-4cd9-b896-4506408257eb HIGH 8.1 The Quantum theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.0. This makes … wordfence
98e9c18b-5118-41cf-b6b9-e8c8a62a8f87
< 1.7
HIGH 8.1 The Archicon - Architecture and Construction WordPress Theme theme for WordPress is vulnerable to PHP Object Injection i… wordfence
983b91f1-d9a4-4035-82b4-2b81238b055f
< 3.5.2
HIGH 8.1 The YouTube Showcase plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 3.5.1 … wordfence
98347e88-c5ef-4695-9059-83bbaa10fc6b HIGH 8.1 The Grit - Life Coach & Business Coaching WordPress Theme theme for WordPress is vulnerable to Local File Inclusion in v… wordfence
9804ec4c-0229-4cbf-907b-05b3bdc49bd9 HIGH 8.1 The Lazy Load Optimizer plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.4… wordfence
97f8bd19-85a5-4cd5-bc61-8637541cdc53 HIGH 8.1 The Bailly theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.3.4. This makes… wordfence
97bc8742-f47a-448d-9eb2-8f08c1cb1e07
< 2.9.10
HIGH 8.1 The ListingPro theme for WordPress is vulnerable to Local File Inclusion in versions up to 2.9.10. This makes it possibl… wordfence
97984c7d-d6ff-480c-acfe-20ab0eb04141
< 2.1.0
HIGH 8.1 The Quick Restaurant Menu plugin for WordPress is vulnerable to authorization bypass due to a missing capability check o… wordfence
977ab23a-06b2-4f54-a2c2-3be2316eaceb
< 1.4.8
HIGH 8.1 The Woostify Sites Library plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capa… wordfence
96cdba03-7385-4374-915d-061be0276a95
< 3.1
HIGH 8.1 The WP Contact Form 7 DB Handler plugin for WordPress is vulnerable to Cross-Site Request Forgery leading to Arbitrary F… wordfence
← Prev 237 238 239 240 241 242 243 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top