The leading open source vulnerability database

Instantly mitigate vulnerabilities in WordPress websites with Patchstack.

Total36,469
Mitigations13,389
Stats
CVSS0
10
Affected software | Vulnerability
RiskDisclosed
Wish To Go<= 0.5.2
Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode Attributes vulnerability
6.5
36 minutes ago
Simcast<= 1.0.0
Cross-Site Request Forgery to Settings Update vulnerability
4.3
37 minutes ago
AH Shortcodes<= 1.0.2
Authenticated (Contributor+) Stored Cross-Site Scripting via 'column' Shortcode Attribute vulnerability
6.5
37 minutes ago
FluentForm<= 6.1.7
Missing Authorization to Authenticated (Subscriber+) Arbitrary Form Creation via AI Builder vulnerability
5.4
38 minutes ago
Snillrik Restaurant<= 2.2.1
Authenticated (Contributor+) Stored Cross-Site Scripting via 'menu_style' Shortcode Attribute vulnerability
6.5
40 minutes ago
Email Customizer for WooCommerce<= 2.6.7
Authenticated (Administrator+) Stored Cross-Site Scripting via Email Template Content vulnerability
4.4
41 minutes ago
Cool YT Player<= 1.0
Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode Attributes vulnerability
6.5
41 minutes ago
My Album Gallery<= 1.0.4
Authenticated (Author+) Stored Cross-Site Scripting via Image Title vulnerability
5.9
42 minutes ago
My Album Gallery<= 1.0.4
Authenticated (Contributor+) Stored Cross-Site Scripting via 'style_css' Shortcode Attribute vulnerability
6.5
43 minutes ago
AD Sliding FAQ<= 2.4
Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode Attributes vulnerability
6.5
43 minutes ago
Responsive Pricing Table<= 5.1.12
Authenticated (Contributor+) Stored Cross-Site Scripting via 'table_currency' vulnerability
6.5
45 minutes ago
Responsive Pricing Table<= 5.1.12
Authenticated (Author+) Stored Cross-Site Scripting vulnerability
5.9
46 minutes ago
Niche Hero<= 1.0.5
Authenticated (Contributor+) Stored Cross-Site Scripting via 'spacing' Shortcode Attribute vulnerability
6.5
46 minutes ago
QR Code Tag for WC<= 1.9.42
Authenticated (Contributor+) Cross-Site Scripting via Shortcode Attributes vulnerability
6.5
47 minutes ago
Viitor Button Shortcodes<= 3.0.0
Authenticated (Contributor+) Stored Cross-Site Scripting via 'link' Shortcode Attribute vulnerability
6.5
48 minutes ago
Multi-column Tag Map<= 17.0.39
Authenticated (Administrator+) Stored Cross-Site Scripting via 'mctm_css_conditional' Parameter vulnerability
5.9
49 minutes ago
Easy GitHub Gist Shortcodes<= 1.0
Authenticated (Contributor+) Stored Cross-Site Scripting via 'id' Shortcode Attribute vulnerability
6.5
51 minutes ago
STM Gallery 1.9<= 0.9
Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode Attributes vulnerability
6.5
51 minutes ago
Reviewify<= 1.0.6
Missing Authorization to Authenticated (Contributor+) Arbitrary WooCommerce Coupon Creation vulnerability
7.5
55 minutes ago
EDD Download Info<= 1.1
Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode Attributes vulnerability
6.5
56 minutes ago