Pricing
Case studies
Login
Start trial
The leading open source vulnerability database
Instantly mitigate vulnerabilities in WordPress websites with Patchstack.
See pricing
Rated 4.9
Total
46,748
Mitigations
Mitigation rules
15,124
No official patch
13,395
In triage
1,529
Published soon
2
Stats
WordPress stats
Search
Everything
Vulnerabilities
Priority
CVSS
0
10
Mitigation available
Exploited
Clear
Affected software | Vulnerability
Risk
Disclosed
User Registration
<= 5.1.4
Missing Authorization to Authenticated (Contributor+) Limited Page Content Modification vulnerability
4.3
7 hours ago
GenerateBlocks
<= 2.2.0
Insecure Direct Object Reference to Authenticated (Contributor+) Sensitive Information Exposure vulnerability
6.5
9 hours ago
Forminator
<= 1.52.0
Missing Authorization to Unauthenticated Stripe PaymentIntent Reuse / Underpayment Bypass vulnerability
5.3
10 hours ago
Carousel, Slider, Gallery by WP Carousel
<= 2.7.10
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
12 hours ago
Royal Elementor Addons
<= 1.7.1056
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
7.1
12 hours ago
Gutenverse
<= 3.5.3
Authenticated (Contributor+) Server-Side Request Forgery vulnerability
6.4
12 hours ago
EmailKit
<= 1.6.5
Authenticated (Author+) Arbitrary File Read vulnerability
6.5
12 hours ago
Gutenverse
<= 3.5.3
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
13 hours ago
Charts Ninja: Create Beautiful Graphs & Charts and Easily Add Them to Your Website
<= 2.1.0
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
13 hours ago
Publish 2 Ping.fm
<= 1.1
Cross-Site Request Forgery to Stored Cross-Site Scripting vulnerability
6.1
13 hours ago
addfreespace
<= 0.1.3
Cross-Site Request Forgery to Stored Cross-Site Scripting vulnerability
4.3
13 hours ago
DX Sources
<= 2.0.1
Cross-Site Request Forgery to Settings Update vulnerability
4.3
13 hours ago
WP-Clippy
<= 1.0.0
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
13 hours ago
Simple Owl Shortcodes
<= 2.1.1
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
13 hours ago
Post Expirator
<= 4.10.0
Authenticated (Administrator+) Stored Cross-Site Scripting vulnerability
5.9
13 hours ago
Loco Translate
<= 2.8.2
Authenticated (Translator+) Path Traversal to Limited File Read vulnerability
4.9
14 hours ago
Event Tickets
<= 5.27.5
Bypass Vulnerability vulnerability
6.5
3 days ago
Premium Addons for Elementor
<= 4.11.70
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
3 days ago
Total
<= 2.2.1
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
3 days ago
Royal Elementor Addons
<= 1.7.1056
Missing Authorization to Unauthenticated Form Action Meta Modification vulnerability
5.3
3 days ago
Load more