Recently exploited vulnerabilities

Get more with our API

WordPress vulnerability statistics

General WordPress security vulnerability statistics powered by the Patchstack Vulnerability Database.

Vulnerabilities disclosed via Patchstack

141By Patchstack Alliance
361By other sources

Most common security vulnerabilities

How to fix common vulnerabilities
  • #1Cross-Site Scripting (XSS)
    33.86%
  • #2Broken Access Control
    26.49%
  • #3Other vulnerabilities
    17.13%
  • #4Cross-Site Request Forgery (CSRF)
    6.18%
  • #5Sensitive Data Exposure
    6.18%
  • #6SQL Injection
    5.58%
  • #7Arbitrary File Upload
    4.58%
  • Disclosed by
    Patchstack
    Other sources

Fixed status of published vulnerabilities

Not fixed
#18938%
Fixed
#31362%

Breakdown by software type

Plugin
#49298%
Theme
#102%
Core
#00%

Breakdown by patch priority

High (Resolve immediately)
#6313%
Medium (Resolve in 14 days)
#6314%
Low (Resolve in 30 days)
#6373%

Breakdown by CVSS severity

Critical (9.0-10.0)
#469%
High (7.0-8.9)
#10922%
Medium (4.0-6.9)
#34569%
Low (0.1-3.9)
#20%