The leading open source vulnerability database

Instantly mitigate vulnerabilities in WordPress websites with Patchstack.

Total36,112
Mitigations13,308
Stats
CVSS0
10
Affected software | Vulnerability
RiskDisclosed
Advance WP Query Search Filter<= 1.0.10
Reflected XSS via taxo_ajax vulnerability
7.1
4 hours ago
Advance WP Query Search Filter<= 1.0.10
Reflected XSS via counter vulnerability
7.1
4 hours ago
Strong Testimonials<= 3.2.18
Missing Authorization to Authenticated (Contributor+) Rating Meta Update vulnerability
4.3
6 hours ago
Lucky Wheel for WooCommerce – Spin a Sale<= 1.1.13
Authenticated (Administrator+) PHP Code Injection via Conditional Tags vulnerability
9.1
6 hours ago
Plugin Organizer< 10.2.4
Subscriber+ SQLi vulnerability
8.5
23 hours ago
YaMaps for WordPress< 0.6.40
Contributor+ Stored XSS vulnerability
6.5
23 hours ago
Advanced Ads<= 2.0.14
Authenticated (Editor+) Remote Code Execution via Shortcode vulnerability
9.1
1 day ago
PixelYourSite – Your smart PIXEL (TAG) Manager<= 11.1.5
Sensitive Information Exposure via Log File vulnerability
5.3
1 day ago
Astra Widgets<= 1.2.16
Cross Site Scripting (XSS) vulnerability
5.9
2 days ago
Newsletters<= 4.12
Cross Site Scripting (XSS) vulnerability
6.5
2 days ago
FlippingBook<= 2.0.1
Cross Site Scripting (XSS) vulnerability
6.5
2 days ago
Web Directory Free<= 1.7.12
Cross Site Scripting (XSS) vulnerability
6.5
2 days ago
WC Builder<= 1.2.0
Cross Site Scripting (XSS) vulnerability
6.5
2 days ago
Zota<= 1.3.14
Local File Inclusion vulnerability
7.5
2 days ago
RestroPress<= 3.2.4.2
Cross Site Scripting (XSS) vulnerability
6.5
2 days ago
Shortcodes and extra features for Phlox theme<= 2.17.12
Broken Access Control vulnerability
4.3
2 days ago
Crowdsignal Forms<= 1.7.2
Broken Access Control vulnerability
3.8
2 days ago
Youzify<= 1.3.5
Server Side Request Forgery (SSRF) vulnerability
4.9
2 days ago
Stratum<= 1.6.1
Broken Access Control vulnerability
4.3
2 days ago
Event Organiser<= 3.12.8
Broken Access Control vulnerability
4.3
3 days ago