Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,113 vulnerabilities found (page 806 of 1605)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| d8009f10-85d0-4798-8b6b-c1e4452139af | < 2.2.7 |
MEDIUM | 6.1 | The fluid-responsive-slideshow plugin before 2.2.7 for WordPress has reflected XSS via the skin parameter. | — | wordfence |
| d7f294af-7702-4762-806b-2abdb1454a7c | < 6.6.5 |
MEDIUM | 6.1 | Cross-site scripting vulnerability in FV Flowplayer Video Player 6.1.2 to 6.6.4 allows remote attackers to inject arbitr… | — | wordfence |
| d7eda36e-7cdf-444f-82ce-561ba96cd0f9 | < 7.3.5 |
MEDIUM | 6.1 | An XSS vulnerability in qcopd-shortcode-generator.php in the Simple Link Directory plugin before 7.3.5 for WordPress all… | — | wordfence |
| d7ebf70c-8b63-4918-a262-1c95a06882c3 | < 1.32.15 |
MEDIUM | 6.1 | The E2Pdf β Export Pdf Tool for WordPress plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in vers… | — | wordfence |
| d7d2c16c-f489-4c78-acca-46e5eddfbc7c | MEDIUM | 6.1 | The WoWPth plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and including, 2.… | — | wordfence | |
| d7d18db8-17f4-4513-86da-8c9228c85eca | MEDIUM | 6.1 | The Evernote Sync plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including,… | — | wordfence | |
| d7d13261-7827-45f0-9afb-ba90cc9f2e51 | MEDIUM | 6.1 | The Blappsta Mobile App Plugin β Your native, mobile iPhone App and Android App plugin for WordPress is vulnerable to … | — | wordfence | |
| d7c4b3bd-926b-4479-8f2f-3c42631282a4 | MEDIUM | 6.1 | The uCAT β Next Story plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and incl… | — | wordfence | |
| d7bee25e-7574-4d3d-ad58-9b30d99de525 | < 4.1.6.8 |
MEDIUM | 6.1 | The LearnPress β WordPress LMS Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via several… | — | wordfence |
| d7a5d60e-5de1-4fc5-b6d1-88700d38e5f0 | MEDIUM | 6.1 | Cross-site request forgery (CSRF) vulnerability in the Member Approval plugin 131109 for WordPress allows remote attacke… | — | wordfence | |
| d79a79bf-db80-4ee6-9d84-542480586b6c | MEDIUM | 6.1 | The Group category creator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, a… | — | wordfence | |
| d79905c2-c824-434d-af44-0ab688c2f818 | MEDIUM | 6.1 | The Social Bookmarking RELOADED plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, … | — | wordfence | |
| d76b08c3-0d28-4e81-8843-5afded9efaa6 | MEDIUM | 6.1 | This Gallery from files WordPress plugin through 1.6.0 gives the functionality of uploading images to the server. But fi… | — | wordfence | |
| d7691f6a-136c-4312-a468-fc896ec07dc6 | < 1.8 |
MEDIUM | 6.1 | The BSK Forms Validation plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and… | — | wordfence |
| d7573471-fc2c-4dde-a681-1068f2b7f925 | MEDIUM | 6.1 | The jCarousel for WordPress plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and … | — | wordfence | |
| d749c24c-0ed9-423b-872a-4771e9d8a2eb | MEDIUM | 6.1 | The Responsive Column Widgets plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the βtabβ par… | — | wordfence | |
| d7258fc0-725e-47b6-ae8f-9e99a8781609 | MEDIUM | 6.1 | The DesignThemes Core Features plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, a… | — | wordfence | |
| d71cdd64-7cd6-4b1a-ae8d-e9bf78e630c7 | < 1.9.7 |
MEDIUM | 6.1 | The DK PDF plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without … | — | wordfence |
| d71143d6-d477-4a63-8f99-f4cc8a590536 | < 1.7.9.9.2 |
MEDIUM | 6.1 | The SEO Links Interlinking plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'google_error' p… | — | wordfence |
| d70eed02-d362-4bbe-aba0-df46e61777a3 | MEDIUM | 6.1 | The amr personalise plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includin… | — | wordfence | |
| d6fcec03-4782-467a-ab8d-1c775ab40d3f | MEDIUM | 6.1 | The BMI Adult & Kid Calculator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, a… | — | wordfence | |
| d6fcd334-4d9a-4c11-ab11-b96cdda698c4 | < 2.1.8 |
MEDIUM | 6.1 | The Kognetiks Chatbot for WordPress plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'dir' p… | — | wordfence |
| d6f5092a-dc71-4290-b443-085a3595bb1a | MEDIUM | 6.1 | The GMO Social Connection plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and in… | — | wordfence | |
| d6f15838-598c-4da4-ade1-0356ec8f6c3b | MEDIUM | 6.1 | The Tube Video Ads Lite plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and … | — | wordfence | |
| d6e36098-fdee-41cb-b2c5-187ac2f73f0e | MEDIUM | 6.1 | The Drone theme for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 1.40 due… | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →