The leading open source vulnerability database

Instantly mitigate vulnerabilities in WordPress websites with Patchstack.

Total47,439
Mitigations15,254
Stats
CVSS0
10
Affected software | Vulnerability
RiskDisclosed
Widget Context<= 1.3.3
Cross-Site Request Forgery to Settings Update vulnerability
4.3
10 hours ago
Vedrixa Forms – User Registration Form, Signup Form & Drag & Drop Form Builder<= 1.1.1
Missing Authorization to Authenticated (Subscriber+) Arbitrary Form Structure Modification vulnerability
4.3
10 hours ago
Slider by Soliloquy<= 2.8.1
Authenticated (Subscriber+) Information Disclosure vulnerability
4.3
10 hours ago
Hotel Booking Lite<= 6.0.1
Missing Authorization to Unauthenticated Arbitrary Booking Notes Modification vulnerability
5.3
10 hours ago
Fluent CRM<= 2.9.87
Unauthenticated Blind Server-Side Request Forgery vulnerability
5.4
10 hours ago
The Plus Addons for Elementor Page Builder Lite<= 6.4.11
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
10 hours ago
Alfie<= 1.2.1
Cross-Site Request Forgery to Feed Deletion vulnerability
4.3
13 hours ago
WP Blockade<= 0.9.14
Reflected Cross-Site Scripting vulnerability
7.1
13 hours ago
FastX<= 1.0.2
Missing Authorization to Authenticated (Subscriber+) Limited Plugin Installation and Activation vulnerability
4.3
13 hours ago
KIA Subtitle<= 4.0.1
[Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')] vulnerability
6.5
14 hours ago
Location Weather<= 3.0.2
Missing Authorization to Authenticated (Contributor+) Block Settings Modification and Cache Purging vulnerability
4.3
14 hours ago
Fusion Builder<= 3.15.2
Unauthenticated Remote Code Execution vulnerability
10
17 hours ago
AcyMailing SMTP Newsletter<= 10.8.2
Missing Authorization to Authenticated (Subscriber+) Privilege Escalation vulnerability
8.8
17 hours ago
Creative Mail<= 1.6.9
Unauthenticated SQL Injection vulnerability
9.3
17 hours ago
Infility Global<= 2.15.16
Authenticated (Subscriber+) SQL Injection vulnerability
8.5
17 hours ago
Kirki – Freeform Page Builder, Website Builder &amp; Customizer<= 6.0.6
Unauthenticated Limited Arbitrary File Read and Deletion vulnerability
7.5
17 hours ago
Zoho ZeptoMail<= 3.2.9
Broken Access Control vulnerability
4.3
21 hours ago
CF7 WOW Styler<= 1.7.6
Broken Access Control vulnerability
5.3
21 hours ago
Mail Mint<= 1.19.5
Sensitive Data Exposure vulnerability
4.3
21 hours ago
Piotnet Addons For Elementor Pro<= 7.1.70
Unauthenticated Arbitrary File Upload vulnerability
10
22 hours ago