Pricing
Case studies
Login
Start trial
The leading open source vulnerability database
Instantly mitigate vulnerabilities in WordPress websites with Patchstack.
See pricing
Rated 4.9
Total
50,057
Mitigations
Mitigation rules
16,150
No official patch
13,189
In triage
1,118
Published soon
22
Stats
WordPress stats
Search
Everything
Vulnerabilities
Priority
CVSS
0
10
Mitigation available
Exploited
Clear filters
Affected software | Vulnerability
Risk
Disclosed
WP Travel Engine
< 6.8.2
Unauthenticated Trip Difficulty Level Option Update vulnerability
6.5
3 minutes ago
Frontend Admin by DynamiApps
< 3.29.7
Subscriber+ Taxonomy Term Creation/Modification/Deletion vulnerability
6.5
4 minutes ago
FluentForm
<= 6.2.8
Reflected Cross-Site Scripting vulnerability
7.1
27 minutes ago
WP Real IP-based Access Control
<= 1.3.1
Unauthenticated Stored XSS vulnerability
7.1
47 minutes ago
Thumbnail carousel slider
< 1.1.53
Reflected Cross-Site Scripting vulnerability
7.1
1 hour ago
MailChimp Subscribe Forms
<= 4.3.3
Unauthenticated Stored Cross-Site Scripting vulnerability
7.1
1 hour ago
Netroics Blog Posts Grid
<= 1.0
Authenticated (Editor+) Stored Cross-Site Scripting vulnerability
6.5
1 hour ago
Subscriptions for WooCommerce
<= 2.0.0
Authenticated (Contributor+) Privilege Escalation vulnerability
8.8
1 hour ago
Easy Property Listings
<= 3.5.24
Authenticated (Subscriber+) Stored Cross-Site Scripting vulnerability
6.5
2 hours ago
Download Manager
< 3.3.66
Author+ Stored XSS vulnerability
5.9
2 hours ago
Dynamic Pricing With Discount Rules for WooCommerce
< 5.0.0
Reflected XSS vulnerability
7.1
2 hours ago
Material Dashboard
<= 1.4.10
Missing Authorization to Unauthenticated Task Enumeration, Execution, and Deletion vulnerability
7.3
2 hours ago
WPFormify – Stripe Payments with Form and Checkout
<= 1.1.1
Missing Authorization vulnerability
8.2
2 hours ago
VikAppointments Services Booking Calendar
<= 1.2.19
Unauthenticated SQL Injection vulnerability
9.3
2 hours ago
AIWU
<= 1.4.6
Missing Authorization to Unauthenticated Sensitive Information Exposure vulnerability
7.5
3 hours ago
Multi Uploader for Gravity Forms
<= 1.1.8
Missing Authorization to Unauthenticated Arbitrary Media Deletion vulnerability
9.1
3 hours ago
WP Activity Log Premium
<= 5.6.4
Cross Site Request Forgery (CSRF) vulnerability
5.4
3 hours ago
Database Collation Fix
<= 1.2.10
Unauthenticated SQL Injection vulnerability
9.3
3 hours ago
User Access Manager
<= 2.3.15
Unauthenticated Arbitrary File Read vulnerability
7.5
4 hours ago
Participants Database
< 2.7.8.4
Unauthenticated SQL Injection vulnerability
9.3
4 hours ago
Load more