Pricing
Case studies
Login
Start trial
The leading open source vulnerability database
Instantly mitigate vulnerabilities in WordPress websites with Patchstack.
See pricing
Rated 4.9
Total
51,986
Mitigations
Mitigation rules
16,983
No official patch
13,347
In triage
1,222
Published soon
12
Stats
WordPress stats
Search
Everything
Vulnerabilities
Priority
CVSS
0
10
Mitigation available
Exploited
Clear filters
Affected software | Vulnerability
Risk
Disclosed
Unlimited Elements For Elementor (Free Widgets, Addons, Templates)
<= 2.0.16
Unauthenticated SQL Injection vulnerability
9.3
2 hours ago
UsersWP
<= 1.2.70
Authenticated (Subscriber+) Arbitrary File Deletion vulnerability
8.1
2 hours ago
MIPL Grouped Checkout Fields for WooCommerce
<= 1.2.2
Unauthenticated Arbitrary File Upload vulnerability
10
2 hours ago
n8n
< 1.123.76
NPM: n8n: Domain-Restriction Bypass via Unguarded Model-Search Endpoint in OpenAI Chat Model Node
7.1
4 hours ago
n8n
< 1.123.76
NPM: n8n: Regular Expression Denial of Service in the Default Blocked-File-Pattern Match via a Git Node Clone Path
7.1
4 hours ago
n8n
< 2.37.7
NPM: n8n: Unauthenticated Persistent Storage Exhaustion via OAuth Dynamic Client Registration Endpoint
8.7
4 hours ago
n8n
< 1.123.76
NPM: n8n: Expression Sandbox Escape via Class-Field Sanitizer Rebinding Can Lead to Code Execution
8.7
4 hours ago
@eigenpal/docx-editor-core
<= 1.8.2
NPM: @eigenpal/docx-editor-react: CSS injection and print-time XSS via unescaped embedded font-family name
8.1
4 hours ago
@eigenpal/docx-editor-react
<= 1.8.2
NPM: @eigenpal/docx-editor-react: CSS injection and print-time XSS via unescaped embedded font-family name
8.1
4 hours ago
Booktics
<= 1.0.23
WordPress Booktics - Booking Calendar for Appointments and Service Businesses plugin <= 1.0.23 - Missing Authorization vulnerability
5.3
4 hours ago
Bold Timeline Lite
<= 1.2.8
Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode Attributes vulnerability
6.5
4 hours ago
Insert or Embed Articulate Content into WordPress
< 4.3000000025
Author+ Upload to RCE vulnerability
9.1
5 hours ago
Text Snippets
<= 0.0.1
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
5 hours ago
Posts map
<= 0.1.3
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
5 hours ago
WPMK Block
<= 1.0.1
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
5 hours ago
Quran Live Multilanguage
<= 1.0.3
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
5 hours ago
ER Swiffy Insert
<= 1.0.0
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
5 hours ago
Slider Bootstrap Carousel
<= 1.0.7
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
5 hours ago
Easy Social Photos Gallery – MIF
<= 3.1.2
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
5 hours ago
Switch CTA Box
<= 1.1
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
5 hours ago
Load more