πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

39,942
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 21, 2026
Last Updated

39,942 vulnerabilities found (page 702 of 1598)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
33275478-59ad-412b-b970-9a39d522bd66
< 9.4
MEDIUM 6.4 The Greenshift – animation and page builder blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting i… wordfence
3316ea0d-4311-4363-b443-b4aeedb2ee36 MEDIUM 6.4 The Mighty Classic Pros And Cons plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, an… wordfence
33146b95-d2c7-433d-a104-5762b251f8ec
< 1.6
MEDIUM 6.4 The Simple Shortcode for Google Maps plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's … wordfence
330e90a1-735c-48db-bf0f-95b7dacd1476
< 2.0.2
MEDIUM 6.4 The Meta slider and carousel with lightbox plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions… wordfence
32f5c4f8-2435-4ede-9dc9-e53fd65467f0
< 2.5.16
MEDIUM 6.4 The Sky Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and in… wordfence
32dd7de3-980d-4ade-988d-a483f16a19df MEDIUM 6.4 The Gradient Text Widget for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up … wordfence
32d341a8-b32f-4e38-8b9c-c483810b1f3a
< 3.4.4
MEDIUM 6.4 The Gutentor plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 3.4.3 d… wordfence
32bc88a7-93ed-4d67-9383-b6d935a0df4d
< 1.1.1
MEDIUM 6.4 The SEO Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'slider' shortcode and… wordfence
32b70801-d80f-40dc-8321-e12ac0b8c695
< 2.8.2
MEDIUM 6.4 The ShopLentor – WooCommerce Builder for Elementor & Gutenberg +12 Modules – All in One Solution (formerly WooLentor… wordfence
32b3552c-5948-444e-9482-056b94387cdc
< 5.11.1
MEDIUM 6.4 The TheGem Theme Elements (for WPBakery) plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions u… wordfence
32ac79f4-ada7-4c14-8675-53f8375912d8
< 6.4.6.1
MEDIUM 6.4 The PeepSo Core: Groups plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Group Description fiel… wordfence
329a140f-94e0-4e2e-8030-c091ad8ac65a
< 6.5.1
MEDIUM 6.4 The LiteSpeed Cache plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, … wordfence
327f23f3-ab4a-4bf6-ba0a-4be73f852648
< 1.3.11
MEDIUM 6.4 The Gum Elementor Addon plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and includi… wordfence
327e41a8-1fd4-4cb6-8a90-b3cdc4977b00
< 2.7.0
MEDIUM 6.4 The Wappointment plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.6… wordfence
327b7a35-59fc-4971-9d3f-10665e1725f7 MEDIUM 6.4 The ThemeLoom Widgets plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'los_showposts'… wordfence
3275c47d-caf5-49e6-8aa2-20a6d8106f26
< 1.1.9.1
MEDIUM 6.4 The Thim Elementor Kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the β€˜id’ parameter in a… wordfence
32652a9a-00ba-4e86-9947-c7c7ebd21494
< 17.0.25
MEDIUM 6.4 The Multi-column Tag Map plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and includ… wordfence
325dd035-db3d-49b4-a422-7c2c734bfd32
< 2.5.5.3
MEDIUM 6.4 The Beaver Builder – WordPress Page Builder for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Captio… wordfence
32483206-7d8f-4b9e-ab44-967a4b7145b4
< 1.6.8
MEDIUM 6.4 The Delicious Recipes – WordPress Recipe Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting in v… wordfence
32369351-ddae-452f-b286-6478deab5a97 MEDIUM 6.4 The Random Banner plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 4.… wordfence
3235ecfb-8aac-4e0c-b11e-77727c362194 MEDIUM 6.4 The Sponsors plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 3.5.1 d… wordfence
3218716a-cce6-4ce7-a6be-4e146e0a6d53 MEDIUM 6.4 The Advance Block Extend plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the TitleColor block attr… wordfence
320bc1c7-a874-4dc2-92b0-fb5620872ff9
< 14.5
MEDIUM 6.4 The Wonder Slider Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via image title and description… wordfence
31f8bd62-32de-468c-9bed-e03374cb595c
< 4.0.9
MEDIUM 6.4 The EmbedPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 4.0.8… wordfence
31f7ae51-2fb2-4311-bc78-7198d6e6b623
< 2.5.7
MEDIUM 6.4 The WPKoi Templates for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Advanced Hea… wordfence
← Prev 699 700 701 702 703 704 705 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top