Recently exploited vulnerabilities

Get more with our API

WordPress vulnerability statistics

General WordPress security vulnerability statistics powered by the Patchstack Vulnerability Database.

Vulnerabilities disclosed via Patchstack

4177By Patchstack Alliance
3788By other sources

Most common security vulnerabilities

How to fix common vulnerabilities
  • #1Cross-Site Scripting (XSS)
    47.70%
  • #2Other vulnerabilities
    14.53%
  • #3Broken Access Control
    14.17%
  • #4Cross-Site Request Forgery (CSRF)
    11.35%
  • #5SQL Injection
    5.08%
  • #6Sensitive Data Exposure
    4.29%
  • #7Arbitrary File Upload
    2.88%
  • Disclosed by
    Patchstack
    Other sources

Fixed status of published vulnerabilities

Not fixed
#196325%
Fixed
#600275%

Breakdown by software type

Plugin
#763396%
Theme
#3264%
Core
#60%

Breakdown by patch priority

High (Resolve immediately)
#92412%
Medium (Resolve in 14 days)
#92419%
Low (Resolve in 30 days)
#92470%

Breakdown by CVSS severity

Critical (9.0-10.0)
#6008%
High (7.0-8.9)
#217327%
Medium (4.0-6.9)
#515465%
Low (0.1-3.9)
#380%