Pricing
Case studies
Login
Start trial
The leading open source vulnerability database
Instantly mitigate vulnerabilities in WordPress websites with Patchstack.
See pricing
Rated 4.9
Total
50,817
Mitigations
Mitigation rules
16,548
No official patch
13,317
In triage
1,082
Published soon
118
Stats
WordPress stats
Search
Everything
Vulnerabilities
Priority
CVSS
0
10
Mitigation available
Exploited
Clear filters
Affected software | Vulnerability
Risk
Disclosed
Cancel order request WooCommerce
< 1.3.4.34
Unauthenticated Order Content Disclosure via Reorder AJAX Actions vulnerability
6.5
35 minutes ago
Child Pages Card
< 1.09
Contributor+ Stored XSS via Shortcode Attributes vulnerability
6.5
39 minutes ago
WP Data Access
< 5.5.79
Unauthenticated Sensitive Data Disclosure via Autocomplete Column Authorization Bypass vulnerability
5.3
40 minutes ago
Salon booking system
< 10.30.34
WordPress Salon Booking System - Free Version plugin < 10.30.34 - Unauthenticated Arbitrary Booking Total Tampering vulnerability
5.3
47 minutes ago
Saitama Addon Pack
<= 1.0.8
Contributor+ Stored XSS via Post Meta vulnerability
6.5
49 minutes ago
WP Custom HTML Page
<= 0.6.2
Author+ Stored XSS vulnerability
5.9
50 minutes ago
Term Pages
< 2.0.0
Unauthenticated SQL Injection via tp_lookup vulnerability
9.3
50 minutes ago
Download Monitor
< 5.2.6
Unauthenticated Download Log Injection vulnerability
5.3
51 minutes ago
LogMyTrip
<= 1.9
Unauthenticated SQL Injection via 'tid' Cookie vulnerability
9.3
53 minutes ago
Filter & Grids
< 3.12.8
Contributor+ Stored XSS via Layout Builder Schema vulnerability
6.5
58 minutes ago
Wired Impact Volunteer Management
< 2.8.2
Subscriber+ Arbitrary RSVP Removal via wivm_remove_rsvp vulnerability
5.4
58 minutes ago
Link Library
< 7.9.3
Unauthenticated SQL Injection via the Front-End Link Submission Form vulnerability
9.3
58 minutes ago
sm page duplicator
<= 1.0.0
Editor+ SQL Injection via Page Duplication vulnerability
7.6
1 hour ago
Slick Slider
< 0.5.3
Contributor+ Stored XSS via Gallery Shortcode vulnerability
6.5
1 hour ago
ChamaWP
< 1.0.13
Unauthenticated Arbitrary User Password Reset vulnerability
9.8
1 hour ago
Clearfy Cache
< 2.4.3
Admin+ PHP Object Injection via Settings Import vulnerability
7.2
1 hour ago
Filter & Grids
< 3.12.9
Author+ Stored XSS via SVG Icon Upload vulnerability
5.9
1 hour ago
Sunshine Photo Cart
< 3.6.12
Unauthenticated Private Gallery Comment Disclosure vulnerability
5.3
1 hour ago
PowerPress Podcasting
< 11.16.11
Contributor+ Stored XSS via Podcast Episode Chapters URL vulnerability
6.5
1 hour ago
Classified Listing
< 5.4.4
Contributor+ Unpublished Post Content Disclosure via rtcl_block_css_get_posts vulnerability
4.3
1 hour ago
Load more