ðŸ›¡ï¸ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,113
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 22, 2026
Last Updated

40,113 vulnerabilities found (page 810 of 1605)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
d3ec7d23-4386-470f-955e-631f461e290b
< 0.98
MEDIUM 6.1 The S3 Video Plugin for WordPress is vulnerable to Cross-Site Scripting in versions before 0.98 due to insufficient inpu… wordfence
d3ea9e96-9958-4a4f-b988-6f024b113fc9
< 1.1.1
MEDIUM 6.1 The PromoBar by BestWebSoft plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and … wordfence
d3e0f601-d445-4805-858a-8ad1ce9e62df MEDIUM 6.1 The Dewplayer plugin for WordPress is vulnerable to Cross-Site Scripting in versions up to, and including, 1.2 due to in… wordfence
d3df5cc6-f998-409a-93fe-e514633e4905 MEDIUM 6.1 Cross-site scripting (XSS) vulnerability in the Uk Cookie (aka uk-cookie) plugin for WordPress allows remote attackers t… wordfence
d3dccecb-893c-4746-9047-5c32ca227508
< 5.0.3
MEDIUM 6.1 The Blog2Social: Social Media Auto Post & Scheduler plugin for WordPress is vulnerable to Reflected Cross-Site Scripting… wordfence
d3d8164c-3fc0-44fe-856f-725b39c102d6
< 3.2.0
MEDIUM 6.1 The Library Viewer plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to 3.2.0 due to i… wordfence
d3d6104b-eb2d-4e7e-98bd-6a46bd69ef5c MEDIUM 6.1 The OPcache Dashboard plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'page' parameter in v… wordfence
d3d0f705-2458-4cc6-8730-997314084f24
< 1.5.5
MEDIUM 6.1 The Invitation Code Content Restriction Plugin from CreativeMinds plugin for WordPress is vulnerable to Reflected Cross-… wordfence
d3c4b62b-c8b1-40b8-b250-d9da94208c62
< 1.4.8
MEDIUM 6.1 The EasyJobs plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘job-id’ parameter in vers… wordfence
d3c3efc9-c1da-4f4e-81d2-f4a7a1a4e740 MEDIUM 6.1 The Child Themes plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, … wordfence
d3ba1ccc-29ae-414d-9c5f-566a75b8346b MEDIUM 6.1 The seekXL Snapr plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, … wordfence
d3a9a1f1-566f-478e-a0b7-857c12f21ff7 MEDIUM 6.1 wordfence
d3a5d7c3-b9dd-46e8-92e2-455ef1394b50 MEDIUM 6.1 The Easy Testimonials plugin 3.0.4 for WordPress has XSS in include/settings/display.options.php, as demonstrated by the… wordfence
d392a5e7-2cfd-44c3-8fa0-cf0bc498f6b8 MEDIUM 6.1 The Easy Contact plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, … wordfence
d38cf4d5-a2b3-46c7-9cbc-777ebf6a68be MEDIUM 6.1 The Comic Easel plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and includin… wordfence
d36d97fb-2fce-4248-8955-7d66919487e3
< 1.42
MEDIUM 6.1 The Automatic pages plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and includin… wordfence
d353bd5b-2155-458a-8959-89358bb00126
< 6.3.0
MEDIUM 6.1 The Popup Box – Create Countdown, Coupon, Video, Contact Form Popups plugin for WordPress is vulnerable to Reflected C… wordfence
d349a232-2852-45be-891c-70053f6a1d26
< 3.95
MEDIUM 6.1 The Qwizcards | online quizzes and flashcards plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via t… wordfence
d33df4e4-6ac7-499a-9d43-d19e287f7689
< 1.4.3
MEDIUM 6.1 The GF Windcave Free plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via URLs in versions up to, an… wordfence
d3300568-4197-4cff-a6f0-696c6d4df075 MEDIUM 6.1 The Wp advertising management plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, an… wordfence
d322fc70-7dc0-439e-936a-da449e310012
< 2.8
MEDIUM 6.1 The FV Antispam plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 2… wordfence
d311aab4-fca8-4e83-83cf-c4b8350d7dd1 MEDIUM 6.1 Cross-site scripting (XSS) vulnerability in swfupload.swf in SWFUpload 2.2.0.1 and earlier, as used in WordPress before … wordfence
d302f956-3f6e-41a7-a02b-d6b4431138b8 MEDIUM 6.1 Cross-site scripting (XSS) vulnerability in includes/delete_img.php in the Joomlaskin JS Multi Hotel (aka JS MultiHotel … wordfence
d2ee943a-a7be-44e3-8fe4-b9c0fbb638f1
< 1.1.6
MEDIUM 6.1 The CRM Perks – WordPress HelpDesk Integration – Zendesk, Freshdesk, HelpScout plugin for WordPress is vulnerable to… wordfence
d2eba19d-1e77-439b-8d96-5dfadb2e9b23 MEDIUM 6.1 The Custom Functions Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and … wordfence
← Prev 807 808 809 810 811 812 813 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top