Pricing
Case studies
Login
Start trial
The leading open source vulnerability database
Instantly mitigate vulnerabilities in WordPress websites with Patchstack.
See pricing
Rated 4.9
Total
50,142
Mitigations
Mitigation rules
16,135
No official patch
13,203
In triage
1,166
Published soon
10
Stats
WordPress stats
Search
Everything
Vulnerabilities
Priority
CVSS
0
10
Mitigation available
Exploited
Clear filters
Affected software | Vulnerability
Risk
Disclosed
Fluent Forms Pro Add On Pack
<= 6.2.6
Authenticated (Subscriber+) PHP Object Injection to Arbitrary User Password Change vulnerability
8.8
4 minutes ago
WPDM – Premium Packages
<= 6.2.0
Unauthenticated SQL Injection vulnerability
9.3
44 minutes ago
TrueBooker
<= 1.2.2
Unauthenticated SQL Injection vulnerability
9.3
57 minutes ago
Taskbuilder
<= 5.0.9
Authenticated (Subscriber+) SQL Injection vulnerability
8.5
1 hour ago
Web Directory Free
<= 1.7.13
Unauthenticated SQL Injection vulnerability
9.3
1 hour ago
Demi – One Click Demo Import, Backup & Site Migration
<= 0.0.7
Unauthenticated Arbitrary Directory Deletion vulnerability
7.5
1 hour ago
ProfileGrid
< 5.9.9.8
Unauthenticated Privilege Escalation vulnerability
9.8
1 hour ago
Customer Switching
< 2.1.3
Customer+ Privilege Escalation to Administrator vulnerability
8.8
1 hour ago
@aws-amplify/codegen-ui-react
<= 2.20.2
NPM: AWS Amplify Studio UI Component Properties Has an Input Validation Issue
9.5
11 hours ago
MailerPress
<= 1.5.0
Missing Authorization to Unauthenticated Contact Updates vulnerability
5.3
12 hours ago
dssrf
<= 1.0.3
NPM: dssrf has an SSRF bypass with remove_at_symbol_in_string
8.7
16 hours ago
Uncanny Automator
<= 7.3.2
Missing Authorization to Authenticated (Subscriber+) Sensitive Integration Metadata Disclosure vulnerability
7.5
19 hours ago
Bookly
<= 27.5
Unauthenticated SQL Injection vulnerability
9.3
20 hours ago
Chaty Pro
<= 3.5.5
Authenticated (Subscriber+) SQL Injection vulnerability
8.5
20 hours ago
Question Answer
<= 1.2.73
Unauthenticated SQL Injection vulnerability
9.3
20 hours ago
WPDM – Premium Packages
<= 7.0.4
Authentication Bypass to Non-Admin vulnerability
6.3
20 hours ago
WP User Frontend
< 4.3.8
Unauthenticated Author-less Attachment Deletion vulnerability
6.5
20 hours ago
TheCartPress
<= 1.5.3.6
Unauthenticated Privilege Escalation vulnerability
9.8
20 hours ago
Backup and Staging by WP Time Capsule
< 1.21.16
Authentication Bypass vulnerability
9.8
20 hours ago
Cherry Framework
<= 3.1.4
Unauthenticated Backup Download vulnerability
7.5
20 hours ago
Load more