🛡️ WordPress Vulnerability Database

Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.

40,117
Total CVEs
66
CISA KEV (Actively Exploited)
Aug 23, 2026
Last Updated

40,117 vulnerabilities found (page 878 of 1605)

CVE IDPlugin / ThemeSeverityCVSSDescriptionFixed InSource
8e127217-fd2a-4b8b-a6a5-85e246bc1289 MEDIUM 6.1 The Custom Field Bulk Editor plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to,… wordfence
8e06032d-2e03-448b-9fe0-282d7723a605
< 2.0.3
MEDIUM 6.1 The PDF & Print by BestWebSoft plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to 2.… wordfence
8e01e4ec-287b-405d-94c8-4627c54ede37 MEDIUM 6.1 The Floatbox Plus plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including,… wordfence
8dfae3cc-b885-4fb8-a6df-a904d5df3c3b MEDIUM 6.1 The Shockingly Big IE6 Warning plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, a… wordfence
8def925b-c123-47d8-984f-a7e78b9db6dc MEDIUM 6.1 The Glance That plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4… wordfence
8dee1e17-0144-482d-81bc-a345ddce6abf MEDIUM 6.1 The Lemonade Social Networks Autoposter Pinterest plugin for WordPress is vulnerable to Reflected Cross-Site Scripting i… wordfence
8de8a412-af19-4a1e-a131-47815b38517f
< 2.3.30
MEDIUM 6.1 The My Calendar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘value’ parameter in ve… wordfence
8de3b45c-e0f2-48a6-a7b3-207981161691 MEDIUM 6.1 The Issuu Panel plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2… wordfence
8de3580c-7740-41a1-a9e3-4b0abcac2a05
< 1.13.51
MEDIUM 6.1 The Product Slider for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up t… wordfence
8ddacd1d-3789-438a-92c6-edc198d4df14 MEDIUM 6.1 The ShoutOut plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 4.0.… wordfence
8dd697ef-cffb-4360-94b5-42178c221a39 MEDIUM 6.1 The Good Old Gallery plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and inc… wordfence
8dbce591-8eb9-479d-9786-be08984bc0eb MEDIUM 6.1 The Easy Code Placement plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and … wordfence
8da49fb2-d12a-4d23-9a8a-1b999046573a MEDIUM 6.1 The kento-post-view-counter plugin through 2.8 for WordPress has XSS via kento_pvc_geo. wordfence
8da0b944-aa60-489b-8622-44b325fcd242
< 0.4.2.7
MEDIUM 6.1 The FoxyPress plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via several parameters in versions up… wordfence
8d98a961-bef3-4bce-b493-410eee688bc6 MEDIUM 6.1 The Order Your Posts Manually plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the '_user_reques… wordfence
8d874540-dced-420d-81c0-46c185df10f1
< 2.0.1
MEDIUM 6.1 Cross-site scripting (XSS) vulnerability in the paging links functionality in template-functions-links.php in Wordpress … wordfence
8d7de93c-f642-4870-b2f9-5070fdccd26b
< 2.8.2
MEDIUM 6.1 The Wbcom Designs – BuddyPress Group Reviews plugin for WordPress is vulnerable to Cross-Site Scripting via several pa… wordfence
8d769308-6273-4ed2-b64a-d9f065de4cce
< 1.0.9
MEDIUM 6.1 The Tablesome plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via unescaped URLs in versions up to,… wordfence
8d6a32ac-dae5-4cc0-84b4-c0bef2334c49 MEDIUM 6.1 The WooCommerce Price Alert plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and … wordfence
8d65b779-717b-4efc-b13d-acdf83ca1e63
< 1.7.1
MEDIUM 6.1 The Photo Gallery plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via an unknown parameter in versi… wordfence
8d553ff1-9f05-47c2-83be-66dba318e63e
< 1.1.8.2
MEDIUM 6.1 The chained-quiz plugin 1.1.8.1 for WordPress has reflected XSS via the wp-admin/admin-ajax.php total_questions paramete… wordfence
8d4ea0a8-d2f6-4209-b17f-0a26ba664c63 MEDIUM 6.1 The Zebra_Form library present in the WP Inimat, Ad Swapper, Drug Search, Teaser Maker, and Customer Service Software & … wordfence
8d41ea3c-2c48-49a4-9432-7727987fe681
< 3.4
MEDIUM 6.1 The RockON DJ theme for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 3.3 … wordfence
8d391629-b0a0-4b85-86d3-e1c7603adc95
< 3.1.12
MEDIUM 6.1 The Icegram Engage plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including… wordfence
8d2dd5e4-558b-44fe-a47c-fb2b5639f39c
< 0.1.993
MEDIUM 6.1 The Media Downloader plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the file name in all versi… wordfence
← Prev 875 876 877 878 879 880 881 Next →

Is your WordPress site affected?

EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.

Scan My Website →
Scroll to Top