Live intelligence from CISA KEV, NVD, and WPScan — updated daily. Check if your plugins and themes have known CVEs.
40,117 vulnerabilities found (page 981 of 1605)
| CVE ID | Plugin / Theme | Severity | CVSS | Description | Fixed In | Source |
|---|---|---|---|---|---|---|
| 1f38aca5-0d69-421e-a3f2-d12cd593a88a | < 3.1.0 |
MEDIUM | 6.1 | The Easy Social Icons plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via multiple parameters in ve… | — | wordfence |
| 1f378686-6479-424f-a321-b66fd7f78ca5 | MEDIUM | 6.1 | The WP Church Center plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and inc… | — | wordfence | |
| 1f36ff03-b599-4f2c-859e-751ac51b652d | < 3.4.0 |
MEDIUM | 6.1 | The liveforms plugin before 3.4.0 for WordPress has XSS via several parameters. | — | wordfence |
| 1f30ffe6-1045-454c-9f68-98a8a5183e1a | < 6.4.4 |
MEDIUM | 6.1 | The Nasa Core plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and excluding,… | — | wordfence |
| 1f1e2e91-cbc7-4cef-8bfc-ef09904df116 | MEDIUM | 6.1 | The blu Logistics plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and includ… | — | wordfence | |
| 1f0a4f00-d437-4138-92a2-c21e5c94eb1d | MEDIUM | 6.1 | The Hotel Listing plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including,… | — | wordfence | |
| 1f0a3c78-ba3e-445c-9612-94e80ef9d018 | < 4.3.3 |
MEDIUM | 6.1 | The ParcelPanel plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'pp_product' parameter in v… | — | wordfence |
| 1f077e15-4974-405e-9e93-ecbef3883c06 | MEDIUM | 6.1 | The WP Video Posts plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including… | — | wordfence | |
| 1f06b855-c1e1-4378-a340-9dda2919fb83 | < 1.4.7 |
MEDIUM | 6.1 | The Motors β Car Dealer & Classified Ads plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via an u… | — | wordfence |
| 1eff0c32-8475-4efa-b412-32746d1ebbaf | MEDIUM | 6.1 | The GTPayment Donations plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and incl… | — | wordfence | |
| 1efb9215-542b-46a1-b358-f3d27339a920 | < 5.15 |
MEDIUM | 6.1 | The Featured Image Pro Post Grid plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the page URL p… | — | wordfence |
| 1ef82f14-f6e3-4e9a-9656-d2d15fbfefb8 | < 1.68.9 |
MEDIUM | 6.1 | The WP-DownloadManager plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and inclu… | — | wordfence |
| 1eef338a-ccc7-41a2-b87a-0945e39380d2 | MEDIUM | 6.1 | The EM Cost Calculator plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and includin… | — | wordfence | |
| 1ee1a4de-25be-46fa-907e-1856862ae52e | < 7.1.03 |
MEDIUM | 6.1 | The wp-live-chat-support plugin before 7.1.03 for WordPress has XSS. | — | wordfence |
| 1ecf2247-5861-4206-9329-f0389a35076b | MEDIUM | 6.1 | The Contact Form 7 Newsletter plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to… | — | wordfence | |
| 1ebd0156-bae1-44a2-8c8a-e5bddd094653 | MEDIUM | 6.1 | The Best Posts Summary plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu… | — | wordfence | |
| 1eb7e894-f4fc-4d0a-bb6b-e42334c15c55 | MEDIUM | 6.1 | The Simple shortcode buttons plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to,… | — | wordfence | |
| 1eb76b3f-b7ac-4de2-a3fa-fbbebc81996c | MEDIUM | 6.1 | The Add RSS plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.5. … | — | wordfence | |
| 1eb1622f-19fb-472e-871b-9a456f80f390 | < 1.2.2 |
MEDIUM | 6.1 | The Job Board by BestWebSoft plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, an… | — | wordfence |
| 1e665e28-1940-4de2-8bbf-1e38585ede38 | MEDIUM | 6.1 | The Ebook Downloader plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includi… | — | wordfence | |
| 1e5fc3c7-f4cb-4e2a-acce-2258bb476abf | MEDIUM | 6.1 | The Post By Email plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including,… | — | wordfence | |
| 1e5e85b2-0caf-47ba-add3-3a33599c54c5 | MEDIUM | 6.1 | The Protected wp-login plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and inclu… | — | wordfence | |
| 1e4f9ce4-93ea-4a42-9eea-cb57e40a3e8c | MEDIUM | 6.1 | The TeleAdmin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 1.0… | — | wordfence | |
| 1e3f3b97-f6f5-44c3-9caa-f8a387b819e6 | MEDIUM | 6.1 | The Secure CAPTCHA plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including… | — | wordfence | |
| 1e38b830-21e6-4bbb-a867-979518125fa6 | < 1.0.21 |
MEDIUM | 6.1 | The Ortto plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 1.0.19 … | — | wordfence |
EzyAudit AI automatically detects your installed plugins and checks them against this database — in seconds.
Scan My Website →