The leading open source vulnerability database

Instantly mitigate vulnerabilities in WordPress websites with Patchstack.

Total50,170
Mitigations16,185
Stats
CVSS0
10
Affected software | Vulnerability
RiskDisclosed
ChamaWP< 1.0.13
Unauthenticated PHP Object Injection vulnerability
9.8
41 minutes ago
AcyMailing SMTP Newsletter< 10.11.1
Unauthenticated SQL Injection vulnerability
9.3
41 minutes ago
MailChimp Forms by MailMunch<= 3.2.7
Missing Authorization to Authenticated (Subscriber+) MailMunch Integration Takeover vulnerability
8.1
53 minutes ago
JoomSport<= 5.7.9
Authenticated (Administrator+) SQL Injection vulnerability
7.6
55 minutes ago
Page Restriction WordPress (WP)<= 1.4.1
Unauthenticated Missing Authorization to Sensitive Information Exposure vulnerability
7.5
55 minutes ago
TableOn<= 1.0.5.1
Unauthenticated Blind SQL Injection vulnerability
9.3
1 hour ago
wiseCampaign<= 1.1.14
Missing Authorization to Unauthenticated Plugin Configuration Modification vulnerability
7.5
1 hour ago
User Access Manager<= 2.3.12
Authenticated (Subscriber+) SQL Injection vulnerability
8.5
1 hour ago
Authora : Easy login with mobile number< 1.7.7
WordPress Authora : Easy login with mobile number plugin < 1.7.7 - Easy Login with Mobile Number < 1.7.7 - Unauthenticated Account Takeover vulnerability
9.8
1 hour ago
Webinfos<= 1.2
Unauthenticated Arbitrary File Upload vulnerability
10
1 hour ago
Login Social<= 1.0.4
Unauthenticated Account Takeover vulnerability
9.8
1 hour ago
POUCO Import Users<= 1.0.0
Unauthenticated Privilege Escalation vulnerability
9.8
1 hour ago
Lenxel WP<= 1.0.31
Unauthenticated Account Takeover vulnerability
9.8
1 hour ago
Support Genix< 1.4.48
Unauthenticated Arbitrary File Read vulnerability
7.5
1 hour ago
Bit File Manager6.0-6.9
WordPress File Manager plugin 6.0-6.9 - 6.9 - Missing Authorization to Authenticated (Subscriber+) Arbitrary File Read and Deletion vulnerability
8.6
1 hour ago
WPMU DEV Dashboard<= 5.0.0
Authentication Bypass to Arbitrary plugin Installation (Remote Code Execution) vulnerability
8.1
1 hour ago
Restrict Content<= 4.0.0
Unauthenticated Password Reset Link Poisoning to Account Takeover vulnerability
9.8
2 hours ago
FluentSMTP<= 2.2.95
Unauthenticated Stored Cross-Site Scripting vulnerability
7.1
2 hours ago
Popup by Supsystic<= 1.12.0
Unauthenticated Privilege Escalation to Administrator vulnerability
9.8
2 hours ago
nuxt>= 3.1.0, < 3.21.10
NPM: Nuxt: Unauthenticated CPU exhaustion parsing and hashing the Nuxt island endpoint body before hash validation
7.5
11 hours ago