Pricing
Case studies
Login
Start trial
The leading open source vulnerability database
Instantly mitigate vulnerabilities in WordPress websites with Patchstack.
See pricing
Rated 4.9
Total
36,105
Mitigations
Mitigation rules
13,301
No official fix
10,167
In triage
1,285
Published soon
52
Stats
WordPress stats
Search
Everything
Vulnerabilities
Priority
CVSS
0
10
Mitigation available
Exploited
Clear
Affected software | Vulnerability
Risk
Disclosed
Advance WP Query Search Filter
<= 1.0.10
Reflected XSS via taxo_ajax vulnerability
7.1
2 hours ago
Advance WP Query Search Filter
<= 1.0.10
Reflected XSS via counter vulnerability
7.1
2 hours ago
Strong Testimonials
<= 3.2.18
Missing Authorization to Authenticated (Contributor+) Rating Meta Update vulnerability
4.3
4 hours ago
Lucky Wheel for WooCommerce – Spin a Sale
<= 1.1.13
Authenticated (Administrator+) PHP Code Injection via Conditional Tags vulnerability
9.1
4 hours ago
Plugin Organizer
< 10.2.4
Subscriber+ SQLi vulnerability
8.5
22 hours ago
YaMaps for WordPress
< 0.6.40
Contributor+ Stored XSS vulnerability
6.5
22 hours ago
Advanced Ads
<= 2.0.14
Authenticated (Editor+) Remote Code Execution via Shortcode vulnerability
9.1
1 day ago
PixelYourSite – Your smart PIXEL (TAG) Manager
<= 11.1.5
Sensitive Information Exposure via Log File vulnerability
5.3
1 day ago
Astra Widgets
<= 1.2.16
Cross Site Scripting (XSS) vulnerability
5.9
2 days ago
Newsletters
<= 4.12
Cross Site Scripting (XSS) vulnerability
6.5
2 days ago
FlippingBook
<= 2.0.1
Cross Site Scripting (XSS) vulnerability
6.5
2 days ago
Web Directory Free
<= 1.7.12
Cross Site Scripting (XSS) vulnerability
6.5
2 days ago
WC Builder
<= 1.2.0
Cross Site Scripting (XSS) vulnerability
6.5
2 days ago
Zota
<= 1.3.14
Local File Inclusion vulnerability
7.5
2 days ago
RestroPress
<= 3.2.4.2
Cross Site Scripting (XSS) vulnerability
6.5
2 days ago
Shortcodes and extra features for Phlox theme
<= 2.17.12
Broken Access Control vulnerability
4.3
2 days ago
Crowdsignal Forms
<= 1.7.2
Broken Access Control vulnerability
3.8
2 days ago
Youzify
<= 1.3.5
Server Side Request Forgery (SSRF) vulnerability
4.9
2 days ago
Stratum
<= 1.6.1
Broken Access Control vulnerability
4.3
2 days ago
Event Organiser
<= 3.12.8
Broken Access Control vulnerability
4.3
3 days ago
Load more