Pricing
Case studies
Login
Start trial
The leading open source vulnerability database
Instantly mitigate vulnerabilities in WordPress websites with Patchstack.
See pricing
Rated 4.9
Total
47,979
Mitigations
Mitigation rules
15,520
No official patch
12,971
In triage
1,554
Published soon
0
Stats
WordPress stats
Search
Everything
Vulnerabilities
Priority
CVSS
0
10
Mitigation available
Exploited
Clear filters
Affected software | Vulnerability
Risk
Disclosed
Hash Elements
<= 1.5.4
Sensitive Data Exposure vulnerability
4.3
1 day ago
Kastell
<= 2.0
Local File Inclusion vulnerability
8.1
2 days ago
FastDup
<= 2.7.2
Path Traversal vulnerability
9.6
2 days ago
JetEngine
<= 3.8.10
PHP Object Injection vulnerability
9.8
2 days ago
Nifty
<= 1.4.1
PHP Object Injection vulnerability
9.8
2 days ago
WordPress & WooCommerce Scraper Plugin, Import Data from Any Site
<= 1.0.7
Arbitrary File Download vulnerability
7.5
2 days ago
WordPress & WooCommerce Scraper Plugin, Import Data from Any Site
<= 1.0.7
Arbitrary File Upload vulnerability
10
2 days ago
BookPro
<= 1.1.0
Arbitrary File Deletion vulnerability
8.6
2 days ago
SEO Redirection
<= 9.17
Cross Site Scripting (XSS) vulnerability
7.1
2 days ago
Fediverse Embeds
<= 1.5.7
Unauthenticated SSRF vulnerability
7.2
2 days ago
Fediverse Embeds
<= 1.5.7
Unauthenticated SSRF vulnerability
5.4
2 days ago
Speed Optimizer
< 7.7.9
Unauthenticated Stored XSS via Minify Library vulnerability
7.1
2 days ago
Clearfy Cache
< 2.4.2
Unauthenticated Stored XSS via Minify Library vulnerability
7.1
2 days ago
Autoptimize
< 3.1.15
Unauthenticated Stored XSS via Minify Library vulnerability
7.1
2 days ago
Email Encoder Bundle
< 2.4.7
Unauthenticated Stored XSS vulnerability
7.1
2 days ago
EventPress
< 22.2
Reflected Cross-Site Scripting vulnerability
7.1
2 days ago
WP Maps
< 4.9.3
Subscriber+ Local File Inclusion vulnerability
8.8
3 days ago
Ajax Load More
< 7.8.4
Reflected XSS vulnerability
7.1
3 days ago
Decent Comments
< 3.0.2
Unauthenticated Email Address Disclosure vulnerability
5.3
3 days ago
Presto Player
<= 4.2.0
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
3 days ago
Load more