Recently exploited vulnerabilities

Get more with our API

WordPress vulnerability statistics

General WordPress security vulnerability statistics powered by the Patchstack Vulnerability Database.

Vulnerabilities disclosed via Patchstack

15824By Patchstack Alliance
17289By other sources

Most common security vulnerabilities

How to fix common vulnerabilities
  • #1Cross-Site Scripting (XSS)
    43.18%
  • #2Other vulnerabilities
    16.41%
  • #3Cross-Site Request Forgery (CSRF)
    15.02%
  • #4Broken Access Control
    10.77%
  • #5SQL Injection
    6.35%
  • #6Sensitive Data Exposure
    5.47%
  • #7Arbitrary File Upload
    2.80%
  • Disclosed by
    Patchstack
    Other sources

Fixed status of published vulnerabilities

Not fixed
#956829%
Fixed
#2354571%

Breakdown by software type

Plugin
#3068593%
Theme
#21206%
Core
#3081%

Breakdown by patch priority

High (Resolve immediately)
#496815%
Medium (Resolve in 14 days)
#496820%
Low (Resolve in 30 days)
#496865%

Breakdown by CVSS severity

Critical (9.0-10.0)
#20057%
High (7.0-8.9)
#957831%
Medium (4.0-6.9)
#1888662%
Low (0.1-3.9)
#1801%