Known Plugin Vulnerabilities
Track known vulnerabilities from configured sources. Default view shows all open and closed vulnerabilities, ordered by most recently updated first.
Open Vulnerabilities
36406Across tracked plugins
Affected Plugins
90With open vulnerabilities
Critical / High
0Require immediate attention
Recently Updated
0In the last 30 days
Vulnerability List
Export CSV| Plugin | Slug | Score | Vulnerability | CVE ID | Severity | Affected Versions | Patched | Updated |
|---|---|---|---|---|---|---|---|---|
| image-hover-effects-elementor-addon | image-hover-effects-elementor-addon |
93
|
Image Hover Effects for Elementor <= 1.0.2.4 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-1.0.2.4 | 1.1.0 | July 5, 2026 | |
| hmenu | hmenu |
83
|
Hero Mega Menu - Responsive WordPress Menu Plugin <= 1.16.5 - Authenticated (Subscriber+) SQL Injection | LOW | *-1.16.5 | July 5, 2026 | ||
| hmenu | hmenu |
83
|
Hero Mega Menu - Responsive WordPress Menu Plugin <= 1.16.5 - Reflected Cross-Site Scripting | LOW | *-1.16.5 | July 5, 2026 | ||
| hmenu | hmenu |
83
|
Hero Mega Menu - Responsive WordPress Menu Plugin <= 1.16.5 - Authenticated (Subscriber+) SQL Injection | LOW | *-1.16.5 | July 5, 2026 | ||
| highlight | highlight |
93
|
Highlight <= 2.0.2 - Authenticated (Administrator+) Stored Cross-Site Scripting | LOW | *-2.0.2 | 2.0.6 | July 5, 2026 | |
| hide-login | hide-login |
91
|
Hide Login+ <= 3.5.1 - Reflected Cross-Site Scripting | LOW | *-3.5.1 | July 5, 2026 | ||
| hide-category-by-user-role-for-woocommerce | hide-category-by-user-role-for-woocommerce |
93
|
Hide Category by User Role for WooCommerce <= 2.1.1 - Missing Authorization | LOW | *-2.1.1 | 2.2 | July 5, 2026 | |
| groundhogg | groundhogg |
93
|
Groundhogg <= 3.7.3.3 - Reflected Cross-Site Scripting | LOW | *-3.7.3.3 | 3.7.3.4 | July 5, 2026 | |
| google-captcha | google-captcha |
93
|
reCaptcha by BestWebSoft <= 1.78 - CAPTCHA Bypass | LOW | *-1.78 | 1.79 | July 5, 2026 | |
| gallery-images-ape | gallery-images-ape |
87
|
Gallery Images Ape <= 2.2.8 - Reflected Cross-Site Scripting | LOW | *-2.2.8 | July 5, 2026 | ||
| fw-integration-for-emailoctopus | fw-integration-for-emailoctopus |
93
|
EO4WP <= 1.0.8.1 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-1.0.8.1 | 1.0.8.2 | July 5, 2026 | |
| fancy-product-designer | fancy-product-designer |
93
|
Fancy Product Designer <= 6.4.3 - Unauthenticated SQL Injection | LOW | *-6.4.3 | 6.4.4 | July 5, 2026 | |
| fancy-product-designer | fancy-product-designer |
93
|
Fancy Product Designer <= 6.4.3 - Unauthenticated Arbitrary File Upload | LOW | *-6.4.3 | 6.4.4 | July 5, 2026 | |
| envato-elements | envato-elements |
93
|
Envato Elements <= 2.0.14 - Authenticated (Author+) Server-Side Request Forgery | LOW | *-2.0.14 | 2.0.15 | July 5, 2026 | |
| emc2-alert-boxes | emc2-alert-boxes |
91
|
EMC2 Alert Boxes <= 1.3 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-1.3 | July 5, 2026 | ||
| email-reminders | email-reminders |
93
|
Email Reminders <= 2.0.5 - Authenticated (Administrator+) Stored Cross-Site Scripting | LOW | *-2.0.5 | 2.0.6 | July 5, 2026 | |
| elex-bulk-edit-products-prices-attributes-for-woocommerce-basic | elex-bulk-edit-products-prices-attributes-for-woocommerce-basic |
93
|
ELEX WooCommerce Advanced Bulk Edit Products, Prices & Attributes <= 1.4.9 - Authenticated (Shop manager+) SQL Injection | LOW | *-1.4.9 | 1.5.0 | July 5, 2026 | |
| elevio | elevio |
91
|
Elevio <= 4.4.1 - Cross-Site Request Forgery | LOW | *-4.4.1 | July 5, 2026 | ||
| dynamictags | dynamictags |
93
|
DynamicTags <= 1.4.0 - Authenticated (Subscriber+) SQL Injection | LOW | *-1.4.0 | 1.4.1 | July 5, 2026 | |
| distance-based-shipping-calculator | distance-based-shipping-calculator |
93
|
Distance Based Shipping Calculator <= 2.0.21 - Reflected Cross-Site Scripting | LOW | *-2.0.21 | 2.0.22 | July 5, 2026 | |
| different-shipping-and-billing-address-for-woocommerce | different-shipping-and-billing-address-for-woocommerce |
93
|
Multiple Shipping And Billing Address For Woocommerce <= 1.2 - Unauthenticated SQL Injection | LOW | *-1.2 | 1.3 | July 5, 2026 | |
| data-dash | data-dash |
89
|
Data Dash <= 1.2.3 - Authenticated (Subscriber+) Stored Cross-Site Scripting | LOW | *-1.2.3 | July 5, 2026 | ||
| css-for-elementor | css-for-elementor |
89
|
ElementsCSS Addons for Elementor <= 1.0.8.7 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-1.0.8.7 | July 5, 2026 | ||
| course-migration-for-learndash | course-migration-for-learndash |
91
|
Course Migration for LearnDash <= 1.0.2 - Authenticated (Subscriber+) Server-Side Request Forgery | LOW | *-1.0.2 | July 5, 2026 | ||
| compact-wp-audio-player | compact-wp-audio-player |
93
|
Compact WP Audio Player <= 1.9.14 - Authenticated (Contributor+) Server-Side Request Forgery | LOW | *-1.9.14 | 1.9.15 | July 5, 2026 | |
| cloudflare-cache-purge | cloudflare-cache-purge |
91
|
CloudFlare(R) Cache Purge <= 1.2 - Reflected Cross-Site Scripting | LOW | *-1.2 | July 5, 2026 | ||
| classic-addons-wpbakery-page-builder-addons | classic-addons-wpbakery-page-builder-addons |
93
|
Classic Addons – WPBakery Page Builder <= 3.0 - Authenticated (Editor+) Local File Inclusion | LOW | *-3.0 | 3.1 | July 5, 2026 | |
| cf7save-extension | cf7save-extension |
91
|
Cf7Save Extension <= 1 - Reflected Cross-Site Scripting | LOW | *-1 | July 5, 2026 | ||
| bvd-easy-gallery-manager | bvd-easy-gallery-manager |
91
|
BVD Easy Gallery Manager <= 1.0.6 - Reflected Cross-Site Scripting | LOW | *-1.0.6 | July 5, 2026 | ||
| bsk-gravityforms-blacklist | bsk-gravityforms-blacklist |
93
|
BSK Forms Blacklist <= 3.9 - Cross-Site Request Forgery | LOW | *-3.9 | 4.0 | July 5, 2026 | |
| Backup Migration | backup-backup |
61
|
Backup Migration <= 1.4.6 - Unauthenticated PHP Object Injection via 'recursive_unserialize_replace' | LOW | *-1.4.6 | 1.4.6.1 | July 5, 2026 | |
| autocompleter | autocompleter |
91
|
Autocompleter <= 1.3.5.2 - Cross-Site Request Forgery | LOW | *-1.3.5.2 | July 5, 2026 | ||
| astra-widgets | astra-widgets |
93
|
Astra Widgets <= 1.2.15 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-1.2.15 | 1.2.16 | July 5, 2026 | |
| arprice | arprice |
95
|
ARPrice <= 4.1.3 - Unauthenticated SQL Injection | LOW | *-4.1.3 | 4.2 | July 5, 2026 | |
| arprice | arprice |
95
|
ARPrice <= 4.1.3 - Unauthenticated PHP Object Injection | LOW | *-4.1.3 | 4.2 | July 5, 2026 | |
| arprice | arprice |
95
|
ARPrice <= 4.1.3 - Authenticated (Subscriber+) SQL Injection | LOW | *-4.1.3 | 4.2 | July 5, 2026 | |
| arprice | arprice |
95
|
ARPrice <= 4.1.3 - Authenticated (Subscriber+) PHP Object Injection | LOW | *-4.1.3 | 4.2 | July 5, 2026 | |
| arprice | arprice |
95
|
ARPrice - WordPress Pricing Table Plugin <= 4.1.3 - Reflected Cross-Site Scripting | LOW | *-4.1.3 | 4.2 | July 5, 2026 | |
| allada-tshirt-designer-for-woocommerce | allada-tshirt-designer-for-woocommerce |
95
|
Allada T-shirt Designer for Woocommerce <= 1.1 - Missing Authorization | LOW | *-1.1 | July 5, 2026 | ||
| allaccessible | allaccessible |
97
|
Accessibility by AllAccessible <= 1.3.4 - Authenticated (Subscriber+) Privilege Escalation | LOW | *-1.3.4 | 1.3.5 | July 5, 2026 | |
| advertising-management | advertising-management |
95
|
Wp advertising management <= 1.0.3 - Reflected Cross-Site Scripting | LOW | *-1.0.3 | July 5, 2026 | ||
| advanced-form-integration | advanced-form-integration |
97
|
Advanced Form Integration <= 1.95.0 - Authenticated (Administrator+) Stored Cross-Site Scripting | LOW | *-1.95.0 | 1.97.0 | July 5, 2026 | |
| advanced-cf7-database | advanced-cf7-database |
95
|
Contact Form 7 Database – CFDB7 <= 1.0.0 - Authenticated (Administrator+) SQL Injection | LOW | *-1.0.0 | July 5, 2026 | ||
| ach-invoice-app | ach-invoice-app |
95
|
Ach Invoice App <= 1.0.1 - Unauthenticated Local File Inclusion | LOW | *-1.0.1 | July 5, 2026 | ||
| 5centscdn | 5centscdn |
95
|
5centsCDN <= 25.4.15 - Reflected Cross-Site Scripting | LOW | *-25.4.15 | July 5, 2026 | ||
| wp-job-portal | wp-job-portal | N/A | WP Job Portal – A Complete Recruitment System for Company or Job Board website <= 2.2.4 - Authenticated (Subscriber+) Insecure Direct Object Reference | LOW | *-2.2.4 | 2.2.5 | July 5, 2026 | |
| top-comments | top-comments | N/A | Top Comments <= 1.0 - Authenticated (Admin+) Stored Cross-Site Scripting | LOW | *-1.0 | July 5, 2026 | ||
| project-panorama-lite | project-panorama-lite | N/A | Panorama – WordPress Project Management Plugin <= 1.5.1 - Authenticated (Admin+) Stored Cross-Site Scripting | LOW | *-1.5.1 | July 5, 2026 | ||
| goodlayers-core | goodlayers-core |
93
|
Goodlayers Core <= 2.0.9 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-2.0.9 | 2.0.10 | July 5, 2026 | |
| wpsso | wpsso | N/A | WPSSO Core <= 18.18.1 - Missing Authorization | LOW | *-18.18.1 | 18.18.2 | July 5, 2026 | |
| WPMasterToolKit (WPMTK) – All in one plugin | wpmastertoolkit | N/A | WPMasterToolKit <= 1.13.1 - Authenticated (Admin+) Arbitrary File Upload | LOW | *-1.13.1 | 1.14.0 | July 5, 2026 | |
| WPMasterToolKit (WPMTK) – All in one plugin | wpmastertoolkit | N/A | WPMasterToolKit <= 1.13.1 - Authenticated (Admin+) Arbitrary File Download | LOW | *-1.13.1 | 1.14.0 | July 5, 2026 | |
| wpkoi-templates-for-elementor | wpkoi-templates-for-elementor | N/A | WPKoi Templates for Elementor <= 3.1.3 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-3.1.3 | 3.1.4 | July 5, 2026 | |
| wp-post-author | wp-post-author | N/A | WP Post Author <= 3.8.2 - Authenticated (Administrator+) SQL Injection | LOW | *-3.8.2 | 3.8.3 | July 5, 2026 | |
| themify-audio-dock | themify-audio-dock | N/A | Themify Audio Dock <= 2.0.4 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-2.0.4 | 2.0.5 | July 5, 2026 | |
| the-plus-addons-for-block-editor | the-plus-addons-for-block-editor | N/A | Nexter Blocks <= 4.0.4 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-4.0.4 | 4.0.5 | July 5, 2026 | |
| shopelement | shopelement | N/A | ShopElement <= 2.0.0 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-2.0.0 | 2.1.0 | July 5, 2026 | |
| pronamic-google-maps | pronamic-google-maps | N/A | Pronamic Google Maps <= 2.3.2 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-2.3.2 | 2.3.3 | July 5, 2026 | |
| premium-blocks-for-gutenberg | premium-blocks-for-gutenberg | N/A | Premium Blocks – Gutenberg Blocks for WordPress <= 2.1.42 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-2.1.42 | 2.1.43 | July 5, 2026 | |
| post-grid-elementor-addon | post-grid-elementor-addon |
93
|
Post Grid Elementor Addon <= 2.0.18 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-2.0.18 | 2.0.19 | July 5, 2026 | |
| music-store | music-store |
93
|
Music Store – WordPress eCommerce <= 1.1.19 - Reflected Cross-Site Scripting | LOW | *-1.1.19 | 1.2.0 | July 5, 2026 | |
| mp3-music-player-by-sonaar | mp3-music-player-by-sonaar |
93
|
MP3 Audio Player for Music, Radio & Podcast by Sonaar <= 5.8 - Missing Authorization | LOW | *-5.8 | 5.9 | July 5, 2026 | |
| move-addons | move-addons |
93
|
Move Addons for Elementor <= 1.3.6 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-1.3.6 | 1.3.7 | July 5, 2026 | |
| magazine-blocks | magazine-blocks |
93
|
Magazine Blocks <= 1.3.20 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-1.3.20 | 1.3.21 | July 5, 2026 | |
| just-writing-statistics | just-writing-statistics |
93
|
Just Writing Statistics <= 4.7 - Authenticated (Administrator+) SQL Injection | LOW | *-4.7 | 4.8 | July 5, 2026 | |
| interactive-uk-map | interactive-uk-map |
93
|
Interactive UK Map <= 3.4.8 - Cross-Site Request Forgery to Stored Cross-Site Scripting | LOW | *-3.4.8 | 3.4.9 | July 5, 2026 | |
| ht-event | ht-event |
93
|
HT Event <= 1.4.6 - Reflected Cross-Site Scripting | LOW | *-1.4.6 | 1.4.7 | July 5, 2026 | |
| hestia-nginx-cache | hestia-nginx-cache |
93
|
Hestia Nginx Cache <= 2.4.0 - Missing Authorization | LOW | *-2.4.0 | 2.4.1 | July 5, 2026 | |
| gs-projects | gs-projects |
93
|
Project Showcase <= 1.1.1 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-1.1.1 | 1.1.2 | July 5, 2026 | |
| gs-dribbble-portfolio | gs-dribbble-portfolio |
93
|
GS Shots for Dribbble <= 1.2.0 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-1.2.0 | 1.2.1 | July 5, 2026 | |
| gs-coach | gs-coach |
93
|
GS Coaches <= 1.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-1.1.0 | 1.1.1 | July 5, 2026 | |
| GeoDirectory – WP Business Directory Plugin and Classified Listings Directory | geodirectory |
66
|
GeoDirectory <= 2.3.84 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-2.3.84 | 2.3.85 | July 5, 2026 | |
| floating-action-buttons | floating-action-buttons |
93
|
Floating Action Buttons <= 0.9.1 - Missing Authorization | LOW | *-0.9.1 | 1.0.1 | July 5, 2026 | |
| event-espresso-decaf | event-espresso-decaf |
93
|
Event Espresso 4 Decaf <= 5.0.28.decaf - Cross-Site Request Forgery | LOW | * - 5.0.28.decaf | 5.0.31.decaf | July 5, 2026 | |
| enteraddons | enteraddons |
93
|
Enter Addons <= 2.1.9 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-2.1.9 | 2.2.1 | July 5, 2026 | |
| Data Tables Generator by Supsystic | data-tables-generator-by-supsystic |
89
|
Data Tables Generator by Supsystic <= 1.10.36 - Missing Authorization | LOW | *-1.10.36 | 1.10.37 | July 5, 2026 | |
| convertcalculator | convertcalculator |
93
|
ConvertCalculator for WordPress <= 1.1.1 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-1.1.1 | 1.1.2 | July 5, 2026 | |
| contest-gallery | contest-gallery |
93
|
Contest Gallery <= 24.0.3 - Authenticated (Author+) Stored Cross-Site Scripting | LOW | *-24.0.3 | 24.0.4 | July 5, 2026 | |
| coins-marketcap | coins-marketcap |
93
|
Coins MarketCap <= 5.5.8 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-5.5.8 | 5.5.9 | July 5, 2026 | |
| ayecode-connect | ayecode-connect |
93
|
AyeCode Connect <= 1.3.8 - Missing Authorization | LOW | *-1.3.8 | 1.3.9 | July 5, 2026 | |
| ashe-extra | ashe-extra |
97
|
Ashe Extra <= 1.2.92 - Missing Authorization | LOW | *-1.2.92 | 1.3 | July 5, 2026 | |
| arconix-shortcodes | arconix-shortcodes |
95
|
Arconix Shortcodes <= 2.1.15 - Reflected Cross-Site Scripting | LOW | *-2.1.15 | 2.1.16 | July 5, 2026 | |
| arconix-shortcodes | arconix-shortcodes |
95
|
Arconix Shortcodes <= 2.1.14 - Authenticated (Contributor+) Stored Cross-Site Scripting | LOW | *-2.1.14 | 2.1.15 | July 5, 2026 | |
| aio-shortcodes | aio-shortcodes |
97
|
Best WordPress Shortcode Plugin in 2025 – AIO Shortcodes <= 1.3.0 - Unauthenticated Stored Cross-Site Scripting | LOW | *-1.3.0 | 1.3.1 | July 5, 2026 | |
| acymailing | acymailing |
97
|
AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPress <= 9.11.0 - Reflected Cross-Site Scripting | LOW | *-9.11.0 | 9.11.1 | July 5, 2026 | |
| acf-city-selector | acf-city-selector |
95
|
ACF City Selector <= 1.14.0 - Authenticated (Admin+) Arbitrary File Upload | LOW | *-1.14.0 | 1.15.0 | July 5, 2026 | |
| post-timeline | post-timeline | N/A | Post Timeline <= 2.3.9 - Reflected Cross-Site Scripting | LOW | *-2.3.9 | 2.3.10 | July 5, 2026 | |
| nova-poshta-ttn | nova-poshta-ttn |
93
|
Shipping for Nova Poshta plugin for WordPress <= 1.19.6 - Unauthenticated SQL Injection | LOW | *-1.19.6 | 1.19.7 | July 5, 2026 | |
| analytics-cat | analytics-cat |
97
|
Analytics Cat <= 1.1.2 - Reflected Cross-Site Scripting | LOW | *-1.1.2 | 1.1.3 | July 5, 2026 | |
| Ninja Forms – The Contact Form Builder That Grows With You | ninja-forms |
69
|
Ninja Forms – The Contact Form Builder That Grows With You <= 3.8.22 - Authenticated (Subscriber+) Arbitrary Shortcode Execution | LOW | *-3.8.22 | 3.8.23 | July 5, 2026 | |
| iamport-for-woocommerce | iamport-for-woocommerce |
93
|
PORTONE 우커머스 결제 <= 3.2.5 - Reflected Cross-Site Scripting | LOW | *-3.2.5 | 3.2.6 | July 5, 2026 | |
| gd-mail-queue | gd-mail-queue |
93
|
GD Mail Queue <= 4.3 - Reflected Cross-Site Scripting | LOW | *-4.3 | 4.4 | July 5, 2026 | |
| List category posts | list-category-posts |
94
|
List category posts <= 0.90.2 - Authenticated (Author+) Stored Cross-Site Scripting | LOW | *-0.90.2 | 0.90.3 | July 5, 2026 | |
| jsp-store-locator | jsp-store-locator |
89
|
JSP Store Locator <= 1.0 - Authenticated (Contributor+) SQL Injection | LOW | *-1.0 | July 5, 2026 | ||
| jsp-store-locator | jsp-store-locator |
89
|
JSP Store Locator <= 1.0 - Cross-Site Request Forgery to Store Deletion | LOW | *-1.0 | July 5, 2026 | ||
| ideapush | ideapush |
93
|
IdeaPush <= 8.72 - Missing Authorization | LOW | *-8.72 | 8.73 | July 5, 2026 | |
| bulk-editor | bulk-editor |
93
|
WOLF – WordPress Posts Bulk Editor and Manager Professional <= 1.0.8.5 - Authenticated (Editor+) Path Traversal | LOW | *-1.0.8.5 | 1.0.8.6 | July 5, 2026 | |
| ahathat | ahathat |
92
|
AHAthat Plugin <= 1.6 - Authenticated (Admin+) SQL Injection | LOW | *-1.6 | July 5, 2026 | ||
| wp24-domain-check | wp24-domain-check | N/A | WP24 Domain Check <= 1.10.14 - Reflected Cross-Site Scripting | LOW | *-1.10.14 | 1.10.15 | July 5, 2026 | |
| newsletters-lite | newsletters-lite |
93
|
Newsletters <= 4.9.9.6 - Reflected Cross-Site Scripting | LOW | *-4.9.9.6 | 4.9.9.7 | July 5, 2026 |
image-hover-effects-elementor-addon
image-hover-effects-elementor-addon
hmenu
hmenu
hmenu
hmenu
hmenu
hmenu
highlight
highlight
hide-login
hide-login
hide-category-by-user-role-for-woocommerce
hide-category-by-user-role-for-woocommerce
groundhogg
groundhogg
google-captcha
google-captcha
gallery-images-ape
gallery-images-ape
fw-integration-for-emailoctopus
fw-integration-for-emailoctopus
fancy-product-designer
fancy-product-designer
fancy-product-designer
fancy-product-designer
envato-elements
envato-elements
emc2-alert-boxes
emc2-alert-boxes
email-reminders
email-reminders
elex-bulk-edit-products-prices-attributes-for-woocommerce-basic
elex-bulk-edit-products-prices-attributes-for-woocommerce-basic
elevio
elevio
dynamictags
dynamictags
distance-based-shipping-calculator
distance-based-shipping-calculator
different-shipping-and-billing-address-for-woocommerce
different-shipping-and-billing-address-for-woocommerce
data-dash
data-dash
css-for-elementor
css-for-elementor
course-migration-for-learndash
course-migration-for-learndash
compact-wp-audio-player
compact-wp-audio-player
cloudflare-cache-purge
cloudflare-cache-purge
classic-addons-wpbakery-page-builder-addons
classic-addons-wpbakery-page-builder-addons
cf7save-extension
cf7save-extension
bvd-easy-gallery-manager
bvd-easy-gallery-manager
bsk-gravityforms-blacklist
bsk-gravityforms-blacklist
Backup Migration
backup-backup
autocompleter
autocompleter
astra-widgets
astra-widgets
arprice
arprice
arprice
arprice
arprice
arprice
arprice
arprice
arprice
arprice
allada-tshirt-designer-for-woocommerce
allada-tshirt-designer-for-woocommerce
allaccessible
allaccessible
advertising-management
advertising-management
advanced-form-integration
advanced-form-integration
advanced-cf7-database
advanced-cf7-database
ach-invoice-app
ach-invoice-app
5centscdn
5centscdn
wp-job-portal
wp-job-portal
top-comments
top-comments
project-panorama-lite
project-panorama-lite
goodlayers-core
goodlayers-core
wpsso
wpsso
WPMasterToolKit (WPMTK) – All in one plugin
wpmastertoolkit
WPMasterToolKit (WPMTK) – All in one plugin
wpmastertoolkit
wpkoi-templates-for-elementor
wpkoi-templates-for-elementor
wp-post-author
wp-post-author
themify-audio-dock
themify-audio-dock
the-plus-addons-for-block-editor
the-plus-addons-for-block-editor
shopelement
shopelement
pronamic-google-maps
pronamic-google-maps
premium-blocks-for-gutenberg
premium-blocks-for-gutenberg
post-grid-elementor-addon
post-grid-elementor-addon
music-store
music-store
mp3-music-player-by-sonaar
mp3-music-player-by-sonaar
move-addons
move-addons
magazine-blocks
magazine-blocks
just-writing-statistics
just-writing-statistics
interactive-uk-map
interactive-uk-map
ht-event
ht-event
hestia-nginx-cache
hestia-nginx-cache
gs-projects
gs-projects
gs-dribbble-portfolio
gs-dribbble-portfolio
gs-coach
gs-coach
GeoDirectory – WP Business Directory Plugin and Classified Listings Directory
geodirectory
floating-action-buttons
floating-action-buttons
event-espresso-decaf
event-espresso-decaf
enteraddons
enteraddons
Data Tables Generator by Supsystic
data-tables-generator-by-supsystic
convertcalculator
convertcalculator
contest-gallery
contest-gallery
coins-marketcap
coins-marketcap
ayecode-connect
ayecode-connect
ashe-extra
ashe-extra
arconix-shortcodes
arconix-shortcodes
arconix-shortcodes
arconix-shortcodes
aio-shortcodes
aio-shortcodes
acymailing
acymailing
acf-city-selector
acf-city-selector
post-timeline
post-timeline
nova-poshta-ttn
nova-poshta-ttn
analytics-cat
analytics-cat
Ninja Forms – The Contact Form Builder That Grows With You
ninja-forms
iamport-for-woocommerce
iamport-for-woocommerce
gd-mail-queue
gd-mail-queue
List category posts
list-category-posts
jsp-store-locator
jsp-store-locator
jsp-store-locator
jsp-store-locator
ideapush
ideapush
bulk-editor
bulk-editor
ahathat
ahathat
wp24-domain-check
wp24-domain-check
newsletters-lite
newsletters-lite
Showing 14001 to 14100 of 36406 results
Vulnerability data is aggregated from automated feeds and public sources. Results may include false positives or outdated information. Always verify details and apply updates in a staging environment before deploying to production.
Data updated daily from trusted sources. Last updated: July 5, 2026 at 10:59 UTC.