Pricing
Case studies
Login
Start trial
The leading open source vulnerability database
Instantly mitigate vulnerabilities in WordPress websites with Patchstack.
See pricing
Rated 4.9
Total
50,170
Mitigations
Mitigation rules
16,185
No official patch
13,196
In triage
1,105
Published soon
31
Stats
WordPress stats
Search
Everything
Vulnerabilities
Priority
CVSS
0
10
Mitigation available
Exploited
Clear filters
Affected software | Vulnerability
Risk
Disclosed
ChamaWP
< 1.0.13
Unauthenticated PHP Object Injection vulnerability
9.8
41 minutes ago
AcyMailing SMTP Newsletter
< 10.11.1
Unauthenticated SQL Injection vulnerability
9.3
41 minutes ago
MailChimp Forms by MailMunch
<= 3.2.7
Missing Authorization to Authenticated (Subscriber+) MailMunch Integration Takeover vulnerability
8.1
53 minutes ago
JoomSport
<= 5.7.9
Authenticated (Administrator+) SQL Injection vulnerability
7.6
55 minutes ago
Page Restriction WordPress (WP)
<= 1.4.1
Unauthenticated Missing Authorization to Sensitive Information Exposure vulnerability
7.5
55 minutes ago
TableOn
<= 1.0.5.1
Unauthenticated Blind SQL Injection vulnerability
9.3
1 hour ago
wiseCampaign
<= 1.1.14
Missing Authorization to Unauthenticated Plugin Configuration Modification vulnerability
7.5
1 hour ago
User Access Manager
<= 2.3.12
Authenticated (Subscriber+) SQL Injection vulnerability
8.5
1 hour ago
Authora : Easy login with mobile number
< 1.7.7
WordPress Authora : Easy login with mobile number plugin < 1.7.7 - Easy Login with Mobile Number < 1.7.7 - Unauthenticated Account Takeover vulnerability
9.8
1 hour ago
Webinfos
<= 1.2
Unauthenticated Arbitrary File Upload vulnerability
10
1 hour ago
Login Social
<= 1.0.4
Unauthenticated Account Takeover vulnerability
9.8
1 hour ago
POUCO Import Users
<= 1.0.0
Unauthenticated Privilege Escalation vulnerability
9.8
1 hour ago
Lenxel WP
<= 1.0.31
Unauthenticated Account Takeover vulnerability
9.8
1 hour ago
Support Genix
< 1.4.48
Unauthenticated Arbitrary File Read vulnerability
7.5
1 hour ago
Bit File Manager
6.0-6.9
WordPress File Manager plugin 6.0-6.9 - 6.9 - Missing Authorization to Authenticated (Subscriber+) Arbitrary File Read and Deletion vulnerability
8.6
1 hour ago
WPMU DEV Dashboard
<= 5.0.0
Authentication Bypass to Arbitrary plugin Installation (Remote Code Execution) vulnerability
8.1
1 hour ago
Restrict Content
<= 4.0.0
Unauthenticated Password Reset Link Poisoning to Account Takeover vulnerability
9.8
2 hours ago
FluentSMTP
<= 2.2.95
Unauthenticated Stored Cross-Site Scripting vulnerability
7.1
2 hours ago
Popup by Supsystic
<= 1.12.0
Unauthenticated Privilege Escalation to Administrator vulnerability
9.8
2 hours ago
nuxt
>= 3.1.0, < 3.21.10
NPM: Nuxt: Unauthenticated CPU exhaustion parsing and hashing the Nuxt island endpoint body before hash validation
7.5
11 hours ago
Load more