Pricing
Case studies
Login
Start trial
The leading open source vulnerability database
Instantly mitigate vulnerabilities in WordPress websites with Patchstack.
See pricing
Rated 4.9
Total
52,437
Mitigations
Mitigation rules
17,094
No official patch
13,361
In triage
1,361
Published soon
11
Stats
WordPress stats
Search
Everything
Vulnerabilities
Priority
CVSS
0
10
Mitigation available
Exploited
Clear filters
Affected software | Vulnerability
Risk
Disclosed
Really Simple SSL
8.1.6-9.8.2
Unauthenticated Unbounded Option Growth vulnerability
5.9
6 minutes ago
iGMS Direct Booking
< 2.0
Unauthenticated Stored XSS vulnerability
7.1
6 minutes ago
Generate PDF using Contact Form 7
< 4.2.2
Unauthenticated Server-Side Request Forgery vulnerability
5.8
6 minutes ago
UpsellWP
1.4.4-2.2.9
Unauthenticated Price Manipulation vulnerability
5.3
8 minutes ago
Filter Gallery
1.1.2-1.1.4
Subscriber+ Arbitrary Post Overwrite and Plugin Option Deletion vulnerability
7.1
8 minutes ago
BookIt
< 2.6.0.5
Bookit Staff+ Arbitrary Appointment Deletion vulnerability
2.7
11 minutes ago
paella-core
< 1.50.6
NPM: Opencast: Stored XSS in Paella player via WebVTT/DFXP caption cue text
8.7
13 minutes ago
All Bootstrap Blocks
1.3.20-1.3.31
Contributor+ LFI vulnerability
6.6
13 minutes ago
Printcart Web to Print Product Designer for WooCommerce
<= 2.8.5
Unauthenticated Arbitrary File Read vulnerability
7.5
15 minutes ago
Mapster WP Maps
<= 1.23.0
Authenticated (Subscriber+) Arbitrary User Meta Write vulnerability
8.8
15 minutes ago
WP Multi Store Locator Pro
<= 4.5.1
Unauthenticated SQL Injection vulnerability
9.3
16 minutes ago
Yo
1.1-1.3.1
Unauthenticated SQL Injection via username Parameter vulnerability
9.3
19 minutes ago
GeoDirectory Location Manager
<= 2.3.38
Unauthenticated SQL Injection vulnerability
9.3
25 minutes ago
WP Shortcut Link
<= 1.2.0
Unauthenticated SQL Injection vulnerability
9.3
25 minutes ago
Product Question and Answer
<= 1.1.0
Unauthenticated SQL Injection vulnerability
9.3
26 minutes ago
Tz Weekly Radio Schedule
<= 1.8.1
Unauthenticated SQL Injection vulnerability
9.3
27 minutes ago
Tz Weekly Radio Schedule
<= 1.8.1
Unauthenticated SQLi vulnerability
9.3
27 minutes ago
Paid Member Subscriptions
< 3.0.9
Unauthenticated Membership Payment Bypass vulnerability
5.3
1 hour ago
Autopay
< 5.0.1
Unauthenticated Cross-Customer Order Payment Parameter Disclosure and Deletion vulnerability
6.5
1 hour ago
Robokassa payment gateway for Woocommerce
< 1.8.9
Unauthenticated Payment Bypass vulnerability
3.7
1 hour ago
Load more