The leading open source vulnerability database

Instantly mitigate vulnerabilities in WordPress websites with Patchstack.

Total50,055
Mitigations16,145
Stats
CVSS0
10
Affected software | Vulnerability
RiskDisclosed
WP Real IP-based Access Control<= 1.3.1
Unauthenticated Stored XSS vulnerability
7.1
21 minutes ago
Thumbnail carousel slider< 1.1.53
Reflected Cross-Site Scripting vulnerability
7.1
42 minutes ago
MailChimp Subscribe Forms <= 4.3.3
Unauthenticated Stored Cross-Site Scripting vulnerability
7.1
46 minutes ago
Netroics Blog Posts Grid<= 1.0
Authenticated (Editor+) Stored Cross-Site Scripting vulnerability
6.5
56 minutes ago
Subscriptions for WooCommerce<= 2.0.0
Authenticated (Contributor+) Privilege Escalation vulnerability
8.8
59 minutes ago
Easy Property Listings<= 3.5.24
Authenticated (Subscriber+) Stored Cross-Site Scripting vulnerability
6.5
1 hour ago
Download Manager< 3.3.66
Author+ Stored XSS vulnerability
5.9
2 hours ago
Dynamic Pricing With Discount Rules for WooCommerce< 5.0.0
Reflected XSS vulnerability
7.1
2 hours ago
Material Dashboard<= 1.4.10
Missing Authorization to Unauthenticated Task Enumeration, Execution, and Deletion vulnerability
7.3
2 hours ago
WPFormify – Stripe Payments with Form and Checkout<= 1.1.1
Missing Authorization vulnerability
8.2
2 hours ago
VikAppointments Services Booking Calendar<= 1.2.19
Unauthenticated SQL Injection vulnerability
9.3
2 hours ago
AIWU<= 1.4.6
Missing Authorization to Unauthenticated Sensitive Information Exposure vulnerability
7.5
2 hours ago
Multi Uploader for Gravity Forms<= 1.1.8
Missing Authorization to Unauthenticated Arbitrary Media Deletion vulnerability
9.1
2 hours ago
WP Activity Log Premium<= 5.6.4
Cross Site Request Forgery (CSRF) vulnerability
5.4
3 hours ago
Database Collation Fix<= 1.2.10
Unauthenticated SQL Injection vulnerability
9.3
3 hours ago
User Access Manager<= 2.3.15
Unauthenticated Arbitrary File Read vulnerability
7.5
3 hours ago
Participants Database< 2.7.8.4
Unauthenticated SQL Injection vulnerability
9.3
3 hours ago
Direct Payments for WooCommerce< 2.5.3
Unauthenticated Cross-Customer Order Tampering vulnerability
7.5
3 hours ago
Contact Form Extender for Divi &#8211; Save Entries, File Upload &amp; Country Code Field<= 1.0.6
Unauthenticated Arbitrary File Deletion vulnerability
8.6
4 hours ago
Pronamic Pay<= 10.1.0
Authenticated (Subscriber+) Privilege Escalation vulnerability
8.8
4 hours ago