πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

39,898
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 19, 2026
Last Updated

39,898 vulnerabilities found (page 606 of 1596)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
8bc96b4f-256e-491b-9d27-de1adbf67643 MEDIUM 6.4 The Livemesh Addons for Beaver Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `[labb_… wordfence
8bc41c61-1d8a-445f-bd70-3b14a40c89d4 MEDIUM 6.4 The Livemesh Addons for Beaver Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `labb_a… wordfence
8bbc0b64-7d9e-4f76-bde4-25c625a4213e MEDIUM 6.4 The Gosign – Posts Slider Block plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, a… wordfence
8bbb473a-055c-421a-89d2-d25c46939731 MEDIUM 6.4 The Smooth Maps plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 1.1 … wordfence
8b9ea717-65a3-49a3-80ca-a91797e8465c
< 3.0.8
MEDIUM 6.4 The Orbit Fox: Duplicate Page, Menu Icons, SVG Support, Cookie Notice, Custom Fonts & More plugin for WordPress is vulne… wordfence
8b80c7e0-73a1-42fc-8248-f2a1710297fe MEDIUM 6.4 The Testimonial Slider Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, an… wordfence
8b777b19-ca0a-4082-80ee-e18a31ba6308
< 1.1.0
MEDIUM 6.4 The Email Address Obfuscation plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the β€˜class’ para… wordfence
8b6e18dd-cb00-4cff-8cda-bf8f7df1cb27
< 1.2.9.1
MEDIUM 6.4 The Thim Elementor Kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and includin… wordfence
8b6c6e10-3feb-4ecd-a17a-81e15c471d3d
< 1.5.8
MEDIUM 6.4 The Ultimate Addons for Beaver Builder – Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via th… wordfence
8b65d1d1-2fa1-4aa5-8e40-9d24cd0251e0 MEDIUM 6.4 The WP Social SEO Booster – Knowledge Graph Social Signals SEO plugin for WordPress is vulnerable to Stored Cross-Site… wordfence
8b639c5c-e4ff-4e43-9088-249c75046d39
< 3.1.1
MEDIUM 6.4 The Portfolio & Image Gallery for WordPress | PowerFolio plugin for WordPress is vulnerable to Stored Cross-Site Scripti… wordfence
8b4effc8-7b24-4a6c-a161-176a22de6d6a
< 1.3.5
MEDIUM 6.4 The Gum Elementor Addon plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Price Table and Post S… wordfence
8b2e7c2d-ed2f-439b-9cee-f2e5d46121b6
< 26.9
MEDIUM 6.4 The Yoast SEO – Advanced SEO with real-time guidance and built-in AI plugin for WordPress is vulnerable to Stored Cros… wordfence
8b2a5938-232e-487c-b31b-f48e2b9acb65
< 5.1.2
MEDIUM 6.4 The Auto Amazon Links – Amazon Associates Affiliate Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scr… wordfence
8b1bfd36-8020-4e38-967e-768a920253f0
< 2.1.6
MEDIUM 6.4 The Easy Elementor Addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and inclu… wordfence
8b1573e6-8fe6-40dd-82d0-dbb51e22e5e8
< 1.5.6
MEDIUM 6.4 The ModelTheme Addons for WPBakery and Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting in ve… wordfence
8b14bdec-9737-4b03-8cc0-e4018494d162
< 5.3.2
MEDIUM 6.4 The Team Members plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all … wordfence
8b145772-624e-4af0-9156-03c483bf8381 MEDIUM 6.4 The Social Feed plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'socialfeed' shortcod… wordfence
8b13fd84-1037-4190-8261-743becb07646
< 1.8.5
MEDIUM 6.4 The WP Delicious plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 1.8… wordfence
8af960cd-6f39-4ce1-888a-f32f01b833df
< 1.0.0.11
MEDIUM 6.4 The Web Icons plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 1.0.0.… wordfence
8aee76b0-7a28-4f03-95a8-15d504cf38a4 MEDIUM 6.4 The Enhanced YouTube Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and … wordfence
8ae9640f-b088-4d9f-9ced-6bf7940345a3
< 3.1.05
MEDIUM 6.4 The FlatPM plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to 3.1.05 due to insufficien… wordfence
8ae463ae-5bfb-4e7c-9f84-edaa9a826ffa MEDIUM 6.4 The Vertical Carousel plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including… wordfence
8ae0030f-af21-43fb-959a-8da04cab05bb
< 2.0.13
MEDIUM 6.4 The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `template-post… wordfence
8adfd055-833c-41f8-99b7-ebc4c2231973
< 2.0.4
MEDIUM 6.4 The QR Code Composer – Automatic QR code Generator plugin for WordPress is vulnerable to Stored Cross-Site Scripting i… wordfence
← Prev 603 604 605 606 607 608 609 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top