Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
39,590 vulnerabilities found (page 247 of 1584)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| 75a1b096-183c-4c97-adcb-4edca7668f05 | < 2.1.0 |
HIGH | 8.1 | The Plug your WooCommerce into the largest catalog of customized print products from Helloprint plugin for WordPress is … | — | wordfence |
| 757f8ff6-f655-459c-bdd8-a3cbeade7b5d | HIGH | 8.1 | The Yottis theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.0.10. This make… | — | wordfence | |
| 7561bce2-bd70-4da3-bbf0-318e59cd1852 | < 3.0.8 |
HIGH | 8.1 | The Gallery Blocks with Lightbox plugin for WordPress is vulnerable to unauthorized data modification due to a missing c… | — | wordfence |
| 74e495e0-9085-4f22-af9c-f47cfa1a46e9 | < 1.8 |
HIGH | 8.1 | The NeoBeat - Music WordPress Theme theme for WordPress is vulnerable to PHP Object Injection in versions up to, and inc… | — | wordfence |
| 74e4808f-bd6f-4e62-91cb-31c86a427498 | < 4.16.12 |
HIGH | 8.1 | The ProfilePress plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and inclu… | — | wordfence |
| 74ab025d-4e76-46e5-b8f8-963eeea5b802 | < 2.8.9 |
HIGH | 8.1 | The uncode-core plugin for WordPress is vulnerable to arbitrary file deletion in all versions up to, and including, 2.8.… | — | wordfence |
| 74211733-142b-4071-b80c-f8beafe0ee4c | < 1.6.3 |
HIGH | 8.1 | The Calculator Builder – Create an Online Calculator plugin for WordPress is vulnerable to Local File Inclusion in all… | — | wordfence |
| 740438a1-9bc3-42bc-aea6-aa9489132349 | HIGH | 8.1 | The Aora - Home & Lifestyle Elementor WooCommerce Theme theme for WordPress is vulnerable to Local File Inclusion in ver… | — | wordfence | |
| 73bece33-1fdf-4b43-95de-35e455763d03 | HIGH | 8.1 | The MaxCube theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.3.1. This make… | — | wordfence | |
| 73a91a9e-5209-4da5-b6f4-f412fd7fb5c4 | HIGH | 8.1 | The WPBruiser {no- Captcha anti-Spam} plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and … | — | wordfence | |
| 7392c960-ee4a-477c-92ee-1e3aca6828d8 | < 2.7.7 |
HIGH | 8.1 | The Store Exporter plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 2.7.6. T… | — | wordfence |
| 732a8d81-ea99-4223-9997-04ac88fd29d7 | < 1.3 |
HIGH | 8.1 | The Château theme for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.2.1 via deser… | — | wordfence |
| 7309ef28-8ec7-40aa-a891-bff088c435c1 | HIGH | 8.1 | The WP with Spritz plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.0. Thi… | — | wordfence | |
| 72b936f5-373e-4cde-baad-549beb29929b | HIGH | 8.1 | The Magazine theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.2.2. This mak… | — | wordfence | |
| 72a5bbcf-94ef-4c73-8275-7609cc36e5f4 | HIGH | 8.1 | The Finag theme for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.5.0 via deserial… | — | wordfence | |
| 7293664d-df09-4443-9691-b5c072951642 | < 1.0.6 |
HIGH | 8.1 | The Site Chat on Telegram plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and includin… | — | wordfence |
| 720b0ebf-c67f-47f4-94eb-8d9b6ab63a72 | HIGH | 8.1 | The WineShop - Food & Wine Store WordPress Theme theme for WordPress is vulnerable to Local File Inclusion in versions u… | — | wordfence | |
| 7203a8c1-8464-4a9f-a076-691f0ca6ad1d | < 1.2 |
HIGH | 8.1 | The Neo Ocular theme for WordPress is vulnerable to Local File Inclusion in versions up to 1.2. This makes it possible f… | — | wordfence |
| 71df23bf-8f51-4260-be1f-ed5bc29d4afe | < 2.7.8 |
HIGH | 8.1 | The WooCommerce - Social Login plugin for WordPress is vulnerable to authentication bypass in all versions up to, and in… | — | wordfence |
| 719fe585-369b-47ef-b3c1-15729f88ae2d | < 5.8 |
HIGH | 8.1 | WordPress before 5.8 lacks support for the Update URI plugin header. This makes it easier for remote attackers to execut… | — | wordfence |
| 71823e36-3899-4253-a1d2-c6f8921d18dc | < 10.0.1 |
HIGH | 8.1 | The The Moneytizer plugin for WordPress is vulnerable to unauthorized access of data, modification of data, and loss of … | — | wordfence |
| 716b51e2-347d-42dc-b930-e02ff29385e5 | < 3.8.6 |
HIGH | 8.1 | The LoveDate theme for WordPress is vulnerable to Local File Inclusion in versions up to 3.8.6. This makes it possible f… | — | wordfence |
| 713d28e8-aeb7-46f5-88e3-768f0fd12dcc | HIGH | 8.1 | The BugsPatrol theme for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.5.0 via des… | — | wordfence | |
| 713b6359-bdea-4131-b754-24ee931463f3 | HIGH | 8.1 | The Promo theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.3.0. This makes … | — | wordfence | |
| 70479769-42d0-4108-94cd-f5ed46bde2f8 | HIGH | 8.1 | The AirSupply theme for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 2.0.0. This ma… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →