The leading open source vulnerability database

Instantly mitigate vulnerabilities in WordPress websites with Patchstack.

Total39,408
Mitigations14,671
Stats
CVSS0
10
Affected software | Vulnerability
RiskDisclosed
EmailKit<= 1.6.3
Authenticated (Administrator+) Path Traversal via 'emailkit-editor-template' REST API Parameter vulnerability
4.9
1 day ago
Contact List<= 3.0.18
Authenticated (Contributor+) Stored Cross-Site Scripting via '_cl_map_iframe' Parameter vulnerability
6.5
1 day ago
Keep Backup Daily<= 2.1.2
Authenticated (Admin+) Stored Cross-Site Scripting via Backup Title vulnerability
5.9
1 day ago
Keep Backup Daily<= 2.1.1
Authenticated (Admin+) Limited Path Traversal via 'kbd_path' Parameter vulnerability
2.7
1 day ago
MyMedi< 1.7.7
Reflected Cross Site Scripting (XSS) vulnerability
7.1
2 days ago
Yobazar< 1.6.7
Reflected Cross Site Scripting (XSS) vulnerability
7.1
2 days ago
Reebox< 1.4.8
Reflected Cross Site Scripting (XSS) vulnerability
7.1
2 days ago
Nooni< 1.5.1
Reflected Cross Site Scripting (XSS) vulnerability
7.1
2 days ago
Alt Manager<= 1.8.2
Authenticated (Author+) Stored Cross-Site Scripting via Post Title vulnerability
5.9
2 days ago
MyDecor< 1.5.9
Reflected Cross Site Scripting (XSS) vulnerability
7.1
2 days ago
Pelicula< 1.10
PHP Object Injection vulnerability
9.8
2 days ago
PublishPress Revisions<= 3.7.23
SQL Injection vulnerability
9.3
2 days ago
MetaMax<= 1.1.4
Local File Inclusion vulnerability
8.1
2 days ago
VintWood<= 1.1.8
Local File Inclusion vulnerability
8.1
2 days ago
Trendustry<= 1.1.4
Local File Inclusion vulnerability
8.1
2 days ago
IdealAuto< 3.8.6
Local File Inclusion vulnerability
8.1
2 days ago
LoveDate< 3.8.6
Local File Inclusion vulnerability
8.1
2 days ago
Feedy< 2.1.5
Local File Inclusion vulnerability
8.1
2 days ago
StreamVid< 6.8.6
Local File Inclusion vulnerability
8.1
2 days ago
Photo Engine<= 6.4.9
Arbitrary File Upload vulnerability
9.1
2 days ago