The leading open source vulnerability database

Instantly mitigate vulnerabilities in WordPress websites with Patchstack.

Total47,477
Mitigations15,273
Stats
CVSS0
10
Affected software | Vulnerability
RiskDisclosed
Fusion Builder<= 3.15.2
Authenticated (Subscriber+) Stored Cross-Site Scripting vulnerability
6.5
1 hour ago
Draft List2.6.3-2.6.3
Authenticated (Author+) Stored Cross-Site Scripting vulnerability
7.1
2 hours ago
CBX 5 Star Rating & Review<= 1.0.7
Reflected Cross-Site Scripting vulnerability
7.1
2 hours ago
AIWU<= 1.4.14
Unauthenticated Stored Cross-Site Scripting vulnerability
7.1
2 hours ago
Cost of Goods by PixelYourSite<= 1.2.12
Unauthenticated Stored Cross-Site Scripting vulnerability
7.1
2 hours ago
Read More & Accordion<= 3.5.7
Privilege Escalation vulnerability
8.8
2 hours ago
Correct Prices<= 1.0
Reflected Cross-Site Scripting vulnerability
7.1
2 hours ago
SponsorMe<= 0.5.2
Reflected Cross-Site Scripting vulnerability
7.1
2 hours ago
LJ comments import: reloaded<= 0.97.1
Reflected Cross-Site Scripting vulnerability
7.1
2 hours ago
VatanSMS WP SMS<= 1.01
Reflected Cross-Site Scripting vulnerability
7.1
2 hours ago
Oliver POS< 4.5.4
Other Vulnerability Type vulnerability
6.5
2 hours ago
診断ジェネレータ作成プラグイン<= 1.4.16
Authenticated (Subscriber+) Stored Cross-Site Scripting via 'js' Parameter vulnerability
6.5
2 hours ago
Kirki – Freeform Page Builder, Website Builder &amp; Customizer<= 6.0.6
Missing Authorization to Authenticated (Subscriber+) Sensitive Form Submission Data Exposure vulnerability
6.5
2 hours ago
WooCommerce PayPal Payments<= 4.0.1
Missing Authorization to Unauthenticated Order Manipulation and Information Disclosure vulnerability
8.2
2 hours ago
WishList Member X<= 3.30.1
Missing Authorization to Authenticated (Subscriber+) API Secret Key Disclosure and Privilege Escalation vulnerability
8.8
2 hours ago
WishList Member X<= 3.30.1
Missing Authorization to Authenticated (Subscriber+) Arbitrary Plugin Options Update vulnerability
8.8
2 hours ago
WishList Member X<= 3.30.1
Missing Authorization to Authenticated (Subscriber+) Generate API Secret Key vulnerability
8.8
2 hours ago
WishList Member X<= 3.30.1
Missing Authorization to Authenticated (Subscriber+) API Secret Key Disclosure and Privilege Escalation vulnerability
8.8
2 hours ago
Ditty<= 3.1.65
Missing Authorization to Unauthenticated Sensitive Information Disclosure vulnerability
7.5
3 days ago
AudioIgniter Music Player<= 2.0.2
Unauthenticated Insecure Direct Object Reference to 'audioigniter_playlist_id' Parameter vulnerability
7.5
3 days ago