Pricing
Case studies
Login
Start trial
The leading open source vulnerability database
Instantly mitigate vulnerabilities in WordPress websites with Patchstack.
See pricing
Rated 4.9
Total
50,383
Mitigations
Mitigation rules
16,224
No official patch
13,190
In triage
1,139
Published soon
17
Stats
WordPress stats
Search
Everything
Vulnerabilities
Priority
CVSS
0
10
Mitigation available
Exploited
Clear filters
Affected software | Vulnerability
Risk
Disclosed
WP Activity Log Premium
<= 5.6.4
Cross Site Request Forgery (CSRF) vulnerability
5.4
33 minutes ago
Database Collation Fix
<= 1.2.10
Unauthenticated SQL Injection vulnerability
9.3
33 minutes ago
User Access Manager
<= 2.3.15
Unauthenticated Arbitrary File Read vulnerability
7.5
43 minutes ago
Participants Database
< 2.7.8.4
Unauthenticated SQL Injection vulnerability
9.3
48 minutes ago
Direct Payments for WooCommerce
< 2.5.3
Unauthenticated Cross-Customer Order Tampering vulnerability
7.5
59 minutes ago
Contact Form Extender for Divi – Save Entries, File Upload & Country Code Field
<= 1.0.6
Unauthenticated Arbitrary File Deletion vulnerability
8.6
1 hour ago
Pronamic Pay
<= 10.1.0
Authenticated (Subscriber+) Privilege Escalation vulnerability
8.8
1 hour ago
Kali Forms
<= 2.4.20
Unauthenticated Remote Code Execution vulnerability
10
1 hour ago
Ultimate Member
< 2.12.1
Unauthenticated Privilege Escalation vulnerability
9.8
1 hour ago
Bit Integrations
<= 2.9.0
Unauthenticated Arbitrary File Read vulnerability
7.5
1 hour ago
CubeWP
<= 1.1.30
Unauthenticated Arbitrary File Read vulnerability
7.5
1 hour ago
WooCommerce Social Login
<= 2.8.7
WordPress WooCommerce - Social Login plugin <= 2.8.7 - Social Login <= 2.8.7 - Unauthenticated Authentication Bypass vulnerability
9.8
1 hour ago
Single Sign On For TNG
<= 2.0.0
Unauthenticated Privilege Escalation vulnerability
9.8
1 hour ago
FormGent
<= 1.9.2
FormGent <= 1.9.2- Missing Authorization to Unauthenticated Arbitrary File Deletion vulnerability
8.6
2 hours ago
ghost
>= 6.27.0, < 6.44.0
NPM: Ghost: Paid gift memberships obtainable at minimal cost via the donations feature
5.3
10 hours ago
ghost
>= 5.18.0, < 6.21.1
NPM: Ghost: Member existence leak via magic link sign-in response
5.3
10 hours ago
@tryghost/activitypub
< 3.1.0
NPM: XSS in Ghost's ActivityPub client
7.5
11 hours ago
ghost
>= 2.2.0, < 6.54.1
NPM: Ghost: Session Fixation in Ghost Admin
6.7
11 hours ago
ghost
>= 0.10.0, < 6.54.1
NPM: Ghost: Theme Upload Path Traversal
6.6
11 hours ago
ghost
>= 1.20.1, < 6.54.1
NPM: Ghost: Database Backup Path Traversal
5.5
11 hours ago
Load more