🛡️ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

39,590
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 14, 2026
Last Updated

39,590 vulnerabilities found (page 247 of 1584)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
75a1b096-183c-4c97-adcb-4edca7668f05
< 2.1.0
HIGH 8.1 The Plug your WooCommerce into the largest catalog of customized print products from Helloprint plugin for WordPress is … wordfence
757f8ff6-f655-459c-bdd8-a3cbeade7b5d HIGH 8.1 The Yottis theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.0.10. This make… wordfence
7561bce2-bd70-4da3-bbf0-318e59cd1852
< 3.0.8
HIGH 8.1 The Gallery Blocks with Lightbox plugin for WordPress is vulnerable to unauthorized data modification due to a missing c… wordfence
74e495e0-9085-4f22-af9c-f47cfa1a46e9
< 1.8
HIGH 8.1 The NeoBeat - Music WordPress Theme theme for WordPress is vulnerable to PHP Object Injection in versions up to, and inc… wordfence
74e4808f-bd6f-4e62-91cb-31c86a427498
< 4.16.12
HIGH 8.1 The ProfilePress plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and inclu… wordfence
74ab025d-4e76-46e5-b8f8-963eeea5b802
< 2.8.9
HIGH 8.1 The uncode-core plugin for WordPress is vulnerable to arbitrary file deletion in all versions up to, and including, 2.8.… wordfence
74211733-142b-4071-b80c-f8beafe0ee4c
< 1.6.3
HIGH 8.1 The Calculator Builder – Create an Online Calculator plugin for WordPress is vulnerable to Local File Inclusion in all… wordfence
740438a1-9bc3-42bc-aea6-aa9489132349 HIGH 8.1 The Aora - Home & Lifestyle Elementor WooCommerce Theme theme for WordPress is vulnerable to Local File Inclusion in ver… wordfence
73bece33-1fdf-4b43-95de-35e455763d03 HIGH 8.1 The MaxCube theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.3.1. This make… wordfence
73a91a9e-5209-4da5-b6f4-f412fd7fb5c4 HIGH 8.1 The WPBruiser {no- Captcha anti-Spam} plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and … wordfence
7392c960-ee4a-477c-92ee-1e3aca6828d8
< 2.7.7
HIGH 8.1 The Store Exporter plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 2.7.6. T… wordfence
732a8d81-ea99-4223-9997-04ac88fd29d7
< 1.3
HIGH 8.1 The Château theme for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.2.1 via deser… wordfence
7309ef28-8ec7-40aa-a891-bff088c435c1 HIGH 8.1 The WP with Spritz plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.0. Thi… wordfence
72b936f5-373e-4cde-baad-549beb29929b HIGH 8.1 The Magazine theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.2.2. This mak… wordfence
72a5bbcf-94ef-4c73-8275-7609cc36e5f4 HIGH 8.1 The Finag theme for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.5.0 via deserial… wordfence
7293664d-df09-4443-9691-b5c072951642
< 1.0.6
HIGH 8.1 The Site Chat on Telegram plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and includin… wordfence
720b0ebf-c67f-47f4-94eb-8d9b6ab63a72 HIGH 8.1 The WineShop - Food & Wine Store WordPress Theme theme for WordPress is vulnerable to Local File Inclusion in versions u… wordfence
7203a8c1-8464-4a9f-a076-691f0ca6ad1d
< 1.2
HIGH 8.1 The Neo Ocular theme for WordPress is vulnerable to Local File Inclusion in versions up to 1.2. This makes it possible f… wordfence
71df23bf-8f51-4260-be1f-ed5bc29d4afe
< 2.7.8
HIGH 8.1 The WooCommerce - Social Login plugin for WordPress is vulnerable to authentication bypass in all versions up to, and in… wordfence
719fe585-369b-47ef-b3c1-15729f88ae2d
< 5.8
HIGH 8.1 WordPress before 5.8 lacks support for the Update URI plugin header. This makes it easier for remote attackers to execut… wordfence
71823e36-3899-4253-a1d2-c6f8921d18dc
< 10.0.1
HIGH 8.1 The The Moneytizer plugin for WordPress is vulnerable to unauthorized access of data, modification of data, and loss of … wordfence
716b51e2-347d-42dc-b930-e02ff29385e5
< 3.8.6
HIGH 8.1 The LoveDate theme for WordPress is vulnerable to Local File Inclusion in versions up to 3.8.6. This makes it possible f… wordfence
713d28e8-aeb7-46f5-88e3-768f0fd12dcc HIGH 8.1 The BugsPatrol theme for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.5.0 via des… wordfence
713b6359-bdea-4131-b754-24ee931463f3 HIGH 8.1 The Promo theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.3.0. This makes … wordfence
70479769-42d0-4108-94cd-f5ed46bde2f8 HIGH 8.1 The AirSupply theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 2.0.0. This ma… wordfence
← Prev 244 245 246 247 248 249 250 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top