Pricing
Case studies
Login
Start trial
The leading open source vulnerability database
Instantly mitigate vulnerabilities in WordPress websites with Patchstack.
See pricing
Rated 4.9
Total
50,055
Mitigations
Mitigation rules
16,145
No official patch
13,189
In triage
1,119
Published soon
22
Stats
WordPress stats
Search
Everything
Vulnerabilities
Priority
CVSS
0
10
Mitigation available
Exploited
Clear filters
Affected software | Vulnerability
Risk
Disclosed
WP Real IP-based Access Control
<= 1.3.1
Unauthenticated Stored XSS vulnerability
7.1
21 minutes ago
Thumbnail carousel slider
< 1.1.53
Reflected Cross-Site Scripting vulnerability
7.1
42 minutes ago
MailChimp Subscribe Forms
<= 4.3.3
Unauthenticated Stored Cross-Site Scripting vulnerability
7.1
46 minutes ago
Netroics Blog Posts Grid
<= 1.0
Authenticated (Editor+) Stored Cross-Site Scripting vulnerability
6.5
56 minutes ago
Subscriptions for WooCommerce
<= 2.0.0
Authenticated (Contributor+) Privilege Escalation vulnerability
8.8
59 minutes ago
Easy Property Listings
<= 3.5.24
Authenticated (Subscriber+) Stored Cross-Site Scripting vulnerability
6.5
1 hour ago
Download Manager
< 3.3.66
Author+ Stored XSS vulnerability
5.9
2 hours ago
Dynamic Pricing With Discount Rules for WooCommerce
< 5.0.0
Reflected XSS vulnerability
7.1
2 hours ago
Material Dashboard
<= 1.4.10
Missing Authorization to Unauthenticated Task Enumeration, Execution, and Deletion vulnerability
7.3
2 hours ago
WPFormify – Stripe Payments with Form and Checkout
<= 1.1.1
Missing Authorization vulnerability
8.2
2 hours ago
VikAppointments Services Booking Calendar
<= 1.2.19
Unauthenticated SQL Injection vulnerability
9.3
2 hours ago
AIWU
<= 1.4.6
Missing Authorization to Unauthenticated Sensitive Information Exposure vulnerability
7.5
2 hours ago
Multi Uploader for Gravity Forms
<= 1.1.8
Missing Authorization to Unauthenticated Arbitrary Media Deletion vulnerability
9.1
2 hours ago
WP Activity Log Premium
<= 5.6.4
Cross Site Request Forgery (CSRF) vulnerability
5.4
3 hours ago
Database Collation Fix
<= 1.2.10
Unauthenticated SQL Injection vulnerability
9.3
3 hours ago
User Access Manager
<= 2.3.15
Unauthenticated Arbitrary File Read vulnerability
7.5
3 hours ago
Participants Database
< 2.7.8.4
Unauthenticated SQL Injection vulnerability
9.3
3 hours ago
Direct Payments for WooCommerce
< 2.5.3
Unauthenticated Cross-Customer Order Tampering vulnerability
7.5
3 hours ago
Contact Form Extender for Divi – Save Entries, File Upload & Country Code Field
<= 1.0.6
Unauthenticated Arbitrary File Deletion vulnerability
8.6
4 hours ago
Pronamic Pay
<= 10.1.0
Authenticated (Subscriber+) Privilege Escalation vulnerability
8.8
4 hours ago
Load more