🛡️ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,113
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 22, 2026
Last Updated

40,113 vulnerabilities found (page 790 of 1605)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
e8845d56-2e8a-472a-bc32-e26b388ce58d
< 7.0.3
MEDIUM 6.1 The افزونه پیامک ووکامرس Persian WooCommerce SMS plugin for WordPress is vulnerable to Reflected Cross… wordfence
e87fe70d-5ac3-40ee-a8d0-601d7b417562 MEDIUM 6.1 The FreshMail For WordPress plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'list_type' par… wordfence
e87bec5f-2265-4272-8a9c-dd8f22e3d421 MEDIUM 6.1 The Remote Images Grabber plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, an… wordfence
e8786f44-09b9-4281-b615-5df4b494a083
< 4.1
MEDIUM 6.1 The WP EasyPay plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg with… wordfence
e8687bf7-4172-4cc3-bd6e-830fc5fc28e9
< 1.2
MEDIUM 6.1 Multiple cross-site scripting (XSS) vulnerabilities in Wordpress 1.2 allow remote attackers to inject arbitrary web scri… wordfence
e8640fba-7c0d-47ae-8d6c-ed504b4bf140 MEDIUM 6.1 The SB Breadcrumbs plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including… wordfence
e860a695-52ca-45c5-8b20-9ee3bc0bf219 MEDIUM 6.1 The Limit Max IPs Per User plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and i… wordfence
e85efdc1-cffc-411a-a2f7-6fa1132e2910
< 3.7.30
MEDIUM 6.1 The Church Admin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, … wordfence
e850aca1-72b3-4436-bc35-2d52c439a7b5 MEDIUM 6.1 The DiveBook plugin 1.1.4 for WordPress is prone to unauthenticated XSS within the filter function (via an arbitrary par… wordfence
e84ee2b5-96b5-427c-ac66-7f80418ae02f
< 3.8.1
MEDIUM 6.1 The Quantity Dynamic Pricing & Bulk Discounts for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site… wordfence
e84e7d6e-9ec9-49f9-90e3-19ac499264ef MEDIUM 6.1 The MailPress WordPress plugin through 7.2.1 does not have CSRF checks in various places, which could allow attackers to… wordfence
e80ed130-8ad2-4fb0-a583-02fc675804d6
< 1.0.26
MEDIUM 6.1 wordfence
e8081bfc-71bb-432c-9a39-386eabada6bc MEDIUM 6.1 The Clasify Classified Listing plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up t… wordfence
e7e67b84-6b75-49ca-b5cc-e80ad7f5c899
< 2.4.3.4
MEDIUM 6.1 The Permalink Manager Lite plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and i… wordfence
e7d74fa8-43ba-41ac-82ec-94addc88fc52
< 2.1.9
MEDIUM 6.1 The Feedify – Web Push Notifications WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the feedify_… wordfence
e7d6f828-0d7b-4ee2-a316-ab55eb7a3d70
< 2.0.5
MEDIUM 6.1 The Woocommerce Vietnam Checkout plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘from’… wordfence
e7d0c727-be79-4344-87de-86cdf3615874 MEDIUM 6.1 The WH Cache & Security plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and incl… wordfence
e7bca584-05d8-4ecf-bf6c-5c2256cb5a61 MEDIUM 6.1 The Infility Global plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and incl… wordfence
e7ae8dcd-00b6-4afc-85bb-6697820bb37c
< 5.12.6
MEDIUM 6.1 The Advanced Custom Fields (free & PRO) plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'po… wordfence
e7a67693-d6e6-4492-ad26-28530e7c4a67
< 6.3.1.2
MEDIUM 6.1 The Community by PeepSo plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query… wordfence
e7913bb4-315a-4dd5-b702-f32a171f7a19 MEDIUM 6.1 The Team Showcase and Slider – Team Members Builder plugin for WordPress is vulnerable to Reflected Cross-Site Scripti… wordfence
e78116a6-5ce5-4567-95d4-2c19fc1b085a MEDIUM 6.1 The Avartan Slider Lite plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘asview-nouce’ … wordfence
e77bb0b8-e101-4230-b707-10a3a126192d
< 2.5.1.9
MEDIUM 6.1 There is a reflected XSS vulnerability in WordPress Arigato Autoresponder and News letter v2.5.1.8 This vulnerability re… wordfence
e7771867-f798-457d-887e-888a6ab00013 MEDIUM 6.1 The Link My Posts plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and includ… wordfence
e774476d-3696-4489-b028-16c25f8db1ca MEDIUM 6.1 The Project Honey Pot Spam Trap plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, … wordfence
← Prev 787 788 789 790 791 792 793 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top