The leading open source vulnerability database

Instantly mitigate vulnerabilities in WordPress websites with Patchstack.

Total38,040
Mitigations13,911
Stats
CVSS0
10
Affected software | Vulnerability
RiskDisclosed
The Bucketlister<= 0.1.5
Missing Authorization to Authenticated (Subscriber+) Bucket List Modification vulnerability
5.4
5 hours ago
The Bucketlister<= 0.1.5
Authenticated (Contributor+) SQL Injection via `category` and `id` Shortcode Attributes vulnerability
8.5
5 hours ago
Video Onclick<= 0.4.7
Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode vulnerability
6.5
5 hours ago
Simple Bible Verse via Shortcode<= 1.1
Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode vulnerability
6.5
5 hours ago
Wikiloops Track Player<= 1.0.1
Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode vulnerability
6.5
6 hours ago
Advanced Country Blocker<= 2.3.1
Unauthenticated Authorization Bypass via Insecure Default Secret Key vulnerability
5.3
6 hours ago
TITLE ANIMATOR<= 1.0
Cross-Site Request Forgery to Settings Update vulnerability
4.3
6 hours ago
OMIGO<= 3.3
Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode vulnerability
6.5
6 hours ago
Wonka Slide<= 1.3.3
Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode vulnerability
6.5
6 hours ago
Bold Page Builder<= 5.4.8
Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode vulnerability
6.5
6 hours ago
Bold Page Builder<= 5.5.3
Authenticated (Author+) Stored DOM-based Cross-Site Scripting in Post Grid vulnerability
5.9
6 hours ago
Bold Page Builder<= 5.5.7
Authenticated (Contributor+) Stored Cross-Site Scripting via bt_bb_accordion_item Shortcode vulnerability
6.5
6 hours ago
Bold Page Builder<= 5.5.1
Authenticated (Contributor+) Stored Cross-Site Scripting via bt_bb_tabs Shortcode vulnerability
6.5
6 hours ago
Aiomatic<= 2.0.5
WordPress AIomatic - Automatic AI Content Writer plugin <= 2.0.5 - Unauthenticated Arbitrary Email Sending vulnerability
5.8
22 hours ago
Form Maker by 10Web<= 1.15.35
Unauthenticated Stored Cross-Site Scripting via Hidden Field vulnerability
7.1
22 hours ago
OS DataHub Maps<= 1.8.3
Authenticated (Author+) Arbitrary File Upload vulnerability
9.1
22 hours ago
Form Maker by 10Web<= 1.15.35
Unauthenticated Stored Cross-Site Scripting via SVG file vulnerability
7.1
22 hours ago
PeproDev WooCommerce Receipt Uploader<= 2.6.9
Reflected Cross-Site Scripting vulnerability
7.1
23 hours ago
Mail Mint<= 1.19.2
Cross-Site Request Forgery to Stored Cross-Site Scripting vulnerability
7.1
23 hours ago
Mortgage Calculator Estatik<= 2.0.11
Reflected Cross-Site Scripting vulnerability
7.1
23 hours ago