The leading open source vulnerability database

Instantly mitigate vulnerabilities in WordPress websites with Patchstack.

Total50,170
Mitigations16,189
Stats
CVSS0
10
Affected software | Vulnerability
RiskDisclosed
Cost Calculator Builder<= 3.6.17
Missing Authorization to Authenticated (Subscriber+) Sensitive Information Disclosure vulnerability
6.5
6 minutes ago
Independent Analytics - Google Analytics Alternative for WordPress<= 2.15.0
Unauthenticated Stored Cross-Site Scripting vulnerability
7.1
8 minutes ago
TranslatePress<= 3.2.5
Reflected Cross-Site Scripting vulnerability
7.1
13 minutes ago
Login/Signup Popup< 3.2.5
Unauthenticated Account Takeover vulnerability
9.8
16 minutes ago
ChamaWP< 1.0.13
Unauthenticated PHP Object Injection vulnerability
9.8
2 hours ago
AcyMailing SMTP Newsletter< 10.11.1
Unauthenticated SQL Injection vulnerability
9.3
2 hours ago
MailChimp Forms by MailMunch<= 3.2.7
Missing Authorization to Authenticated (Subscriber+) MailMunch Integration Takeover vulnerability
8.1
2 hours ago
JoomSport<= 5.7.9
Authenticated (Administrator+) SQL Injection vulnerability
7.6
2 hours ago
Page Restriction WordPress (WP)<= 1.4.1
Unauthenticated Missing Authorization to Sensitive Information Exposure vulnerability
7.5
2 hours ago
TableOn<= 1.0.5.1
Unauthenticated Blind SQL Injection vulnerability
9.3
2 hours ago
wiseCampaign<= 1.1.14
Missing Authorization to Unauthenticated Plugin Configuration Modification vulnerability
7.5
2 hours ago
User Access Manager<= 2.3.12
Authenticated (Subscriber+) SQL Injection vulnerability
8.5
3 hours ago
Authora : Easy login with mobile number< 1.7.7
WordPress Authora : Easy login with mobile number plugin < 1.7.7 - Easy Login with Mobile Number < 1.7.7 - Unauthenticated Account Takeover vulnerability
9.8
3 hours ago
Webinfos<= 1.2
Unauthenticated Arbitrary File Upload vulnerability
10
3 hours ago
Login Social<= 1.0.4
Unauthenticated Account Takeover vulnerability
9.8
3 hours ago
POUCO Import Users<= 1.0.0
Unauthenticated Privilege Escalation vulnerability
9.8
3 hours ago
Lenxel WP<= 1.0.31
Unauthenticated Account Takeover vulnerability
9.8
3 hours ago
Support Genix< 1.4.48
Unauthenticated Arbitrary File Read vulnerability
7.5
3 hours ago
Bit File Manager6.0-6.9
WordPress File Manager plugin 6.0-6.9 - 6.9 - Missing Authorization to Authenticated (Subscriber+) Arbitrary File Read and Deletion vulnerability
8.6
3 hours ago
WPMU DEV Dashboard<= 5.0.0
Authentication Bypass to Arbitrary plugin Installation (Remote Code Execution) vulnerability
8.1
3 hours ago