The leading open source vulnerability database

Instantly mitigate vulnerabilities in WordPress websites with Patchstack.

Total51,499
Mitigations16,840
Stats
CVSS0
10
Affected software | Vulnerability
RiskDisclosed
Gallery PhotoBlocks<= 1.3.4
Cross Site Scripting (XSS) vulnerability
6.5
14 minutes ago
WP Go Maps<= 10.1.08
Denial of Service Attack vulnerability
5.3
21 minutes ago
Really Simple SSL<= 9.8.0
Denial of Service Attack vulnerability
5.3
23 minutes ago
Broken Link Checker<= 2.4.14
Server Side Request Forgery (SSRF) vulnerability
5.5
24 minutes ago
Mang Board WP<= 2.3.8
Cross Site Request Forgery (CSRF) vulnerability
8.8
25 minutes ago
PublishPress Permissions<= 4.8.3
Insecure Direct Object References (IDOR) vulnerability
5.3
25 minutes ago
Simply Schedule Appointments<= 1.6.12.23
Cross Site Request Forgery (CSRF) vulnerability
8.8
37 minutes ago
Ultimate Gift Cards For WooCommerce<= 3.2.9
Broken Access Control vulnerability
5.3
39 minutes ago
Activity Log<= 2.13.1
Cross Site Request Forgery (CSRF) vulnerability
7.1
40 minutes ago
Broken Link Checker<= 2.4.13
Unauthenticated Stored Cross-Site Scripting vulnerability
7.1
3 hours ago
FluentCart<= 1.6.2
Authenticated (Custom+) Arbitrary File Deletion vulnerability
7.7
3 hours ago
WP Project Manager Pro<= 4.0.1
Authenticated (Subscriber+) SQL Injection vulnerability
8.5
4 hours ago
Måne<= 1.7
Unauthenticated Local File Inclusion vulnerability
8.1
4 hours ago
WordPress Persistent Login<= 3.1.0
Authenticated (Subscriber+) SQL Injection vulnerability
8.5
4 hours ago
WP Cookie Notice for GDPR, CCPA & ePrivacy Consent<= 4.4.1
Unauthenticated Arbitrary File Upload vulnerability
10
4 hours ago
TranslatePress<= 3.3.1
Unauthenticated Account Takeover vulnerability
9.8
4 hours ago
Formidable Charts<= 2.0.1
Unauthenticated Arbitrary File Read via 'frm_graph' Parameter vulnerability
7.5
4 hours ago
sanitize-html>= 1.9.0, <= 2.17.6
NPM: ApostropheCMS: Stored XSS via SVG SMIL URI-list scheme-policy bypass
5.4
13 hours ago
nanoid< 3.3.12
NPM: nanoid: Integer Overflow or Wraparound
7.4
15 hours ago
pnpm>= 10.7.0, < 10.34.5
NPM: pnpm: Environment secrets exfiltrated via env-placeholder expansion in proxy settings read from an untrusted pnpm-workspace.yaml
7.4
15 hours ago