WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in Accordions – Responsive Accordion & FAQ Plugin for WordPress

Responsive, lightweight, and fully customizable accordion plugin for WordPress. Perfect for FAQs, content organization, and improving user experience.

4Reported vulnerabilities
6.4Highest CVSS score
3.0.6Latest version
1,000+Active installs

What to do now

Update Accordions – Responsive Accordion & FAQ Plugin for WordPress to 3.0.4 or later. 3 of these have a fixed version available. Updating resolves them.

Plugin last updated: June 14, 2026 / Tested up to WordPress: 7.0.4 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2023-5666 Medium 5.4 0.5% Before 2.7 2.7 October 30, 2023
CVE-2026-66471 Medium 6.4 0.2% 3.0.6 and earlier August 10, 2026
CVE-2023-47809 Medium 5.5 0.4% 2.6 and earlier 2.7 November 15, 2023
CVE-2025-69350 Medium 4.4 0.2% 3.0.3 and earlier 3.0.4 January 7, 2026

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.