πŸ›‘οΈ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,113
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 22, 2026
Last Updated

40,113 vulnerabilities found (page 806 of 1605)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
d8009f10-85d0-4798-8b6b-c1e4452139af
< 2.2.7
MEDIUM 6.1 The fluid-responsive-slideshow plugin before 2.2.7 for WordPress has reflected XSS via the skin parameter. wordfence
d7f294af-7702-4762-806b-2abdb1454a7c
< 6.6.5
MEDIUM 6.1 Cross-site scripting vulnerability in FV Flowplayer Video Player 6.1.2 to 6.6.4 allows remote attackers to inject arbitr… wordfence
d7eda36e-7cdf-444f-82ce-561ba96cd0f9
< 7.3.5
MEDIUM 6.1 An XSS vulnerability in qcopd-shortcode-generator.php in the Simple Link Directory plugin before 7.3.5 for WordPress all… wordfence
d7ebf70c-8b63-4918-a262-1c95a06882c3
< 1.32.15
MEDIUM 6.1 The E2Pdf – Export Pdf Tool for WordPress plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in vers… wordfence
d7d2c16c-f489-4c78-acca-46e5eddfbc7c MEDIUM 6.1 The WoWPth plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and including, 2.… wordfence
d7d18db8-17f4-4513-86da-8c9228c85eca MEDIUM 6.1 The Evernote Sync plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including,… wordfence
d7d13261-7827-45f0-9afb-ba90cc9f2e51 MEDIUM 6.1 The Blappsta Mobile App Plugin – Your native, mobile iPhone App and Android App plugin for WordPress is vulnerable to … wordfence
d7c4b3bd-926b-4479-8f2f-3c42631282a4 MEDIUM 6.1 The uCAT – Next Story plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and incl… wordfence
d7bee25e-7574-4d3d-ad58-9b30d99de525
< 4.1.6.8
MEDIUM 6.1 The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via several… wordfence
d7a5d60e-5de1-4fc5-b6d1-88700d38e5f0 MEDIUM 6.1 Cross-site request forgery (CSRF) vulnerability in the Member Approval plugin 131109 for WordPress allows remote attacke… wordfence
d79a79bf-db80-4ee6-9d84-542480586b6c MEDIUM 6.1 The Group category creator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, a… wordfence
d79905c2-c824-434d-af44-0ab688c2f818 MEDIUM 6.1 The Social Bookmarking RELOADED plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, … wordfence
d76b08c3-0d28-4e81-8843-5afded9efaa6 MEDIUM 6.1 This Gallery from files WordPress plugin through 1.6.0 gives the functionality of uploading images to the server. But fi… wordfence
d7691f6a-136c-4312-a468-fc896ec07dc6
< 1.8
MEDIUM 6.1 The BSK Forms Validation plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and… wordfence
d7573471-fc2c-4dde-a681-1068f2b7f925 MEDIUM 6.1 The jCarousel for WordPress plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and … wordfence
d749c24c-0ed9-423b-872a-4771e9d8a2eb MEDIUM 6.1 The Responsive Column Widgets plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the β€˜tab’ par… wordfence
d7258fc0-725e-47b6-ae8f-9e99a8781609 MEDIUM 6.1 The DesignThemes Core Features plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, a… wordfence
d71cdd64-7cd6-4b1a-ae8d-e9bf78e630c7
< 1.9.7
MEDIUM 6.1 The DK PDF plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without … wordfence
d71143d6-d477-4a63-8f99-f4cc8a590536
< 1.7.9.9.2
MEDIUM 6.1 The SEO Links Interlinking plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'google_error' p… wordfence
d70eed02-d362-4bbe-aba0-df46e61777a3 MEDIUM 6.1 The amr personalise plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includin… wordfence
d6fcec03-4782-467a-ab8d-1c775ab40d3f MEDIUM 6.1 The BMI Adult & Kid Calculator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, a… wordfence
d6fcd334-4d9a-4c11-ab11-b96cdda698c4
< 2.1.8
MEDIUM 6.1 The Kognetiks Chatbot for WordPress plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'dir' p… wordfence
d6f5092a-dc71-4290-b443-085a3595bb1a MEDIUM 6.1 The GMO Social Connection plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and in… wordfence
d6f15838-598c-4da4-ade1-0356ec8f6c3b MEDIUM 6.1 The Tube Video Ads Lite plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and … wordfence
d6e36098-fdee-41cb-b2c5-187ac2f73f0e MEDIUM 6.1 The Drone theme for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 1.40 due… wordfence
← Prev 803 804 805 806 807 808 809 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top