The leading open source vulnerability database

Instantly mitigate vulnerabilities in WordPress websites with Patchstack.

Total46,907
Mitigations15,218
Stats
CVSS0
10
Affected software | Vulnerability
RiskDisclosed
Taskbuilder<= 5.0.6
Authenticated (Subscriber+) Time-Based Blind SQL Injection vulnerability
8.5
4 minutes ago
InfusedWoo Pro<= 5.1.2
Unauthenticated Arbitrary File Read vulnerability
7.2
10 minutes ago
InfusedWoo Pro<= 5.1.2
Unauthenticated Missing Authorization to Arbitrary Post Deletion vulnerability
9.1
12 minutes ago
InfusedWoo Pro<= 5.1.2
Authenticated (Subscriber+) Missing Authorization to Privilege Escalation vulnerability
8.8
25 minutes ago
InfusedWoo Pro<= 5.1.2
Unauthenticated Missing Authorization to Privilege Escalation vulnerability
9.8
34 minutes ago
Motors<= 1.4.107
Authenticated (Subscriber+) Arbitrary File Deletion vulnerability
8.1
48 minutes ago
FluentForm<= 6.2.0
Authenticated (Subscriber+) Authorization Bypass vulnerability
8.2
56 minutes ago
FluentForm<= 6.1.21
Authenticated (Subscriber+) Authorization Bypass vulnerability
8.2
57 minutes ago
Career Section<= 1.7
Unauthenticated Arbitrary File Upload vulnerability
10
1 hour ago
Burst Statistics3.4.0-3.4.1.1
Privacy-Friendly WordPress Analytics (Google Analytics Alternative) plugin 3.4.0-3.4.1.1 - 3.4.1.1 - Authentication Bypass to Admin Account Takeover vulnerability
9.8
1 hour ago
Royal Elementor Addons<= 1.7.1058
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
15 hours ago
User Registration<= 5.1.5
Unauthenticated Missing Authorization to Admin Approval Bypass vulnerability
5.3
15 hours ago
MW WP Form<= 5.1.2
Insecure Direct Object Reference to Unauthenticated Sensitive Information Disclosure vulnerability
5.3
15 hours ago
CC Child Pages<= 2.1.1
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
15 hours ago
Bold Page Builder<= 5.6.8
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
16 hours ago
Meta Field Block<= 1.5.2
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
16 hours ago
Media Sync<= 1.4.9
Authenticated (Author+) Path Traversal vulnerability
6.5
16 hours ago
LatePoint<= 5.3.2
Cross-Site Request Forgery vulnerability
4.3
17 hours ago
WP Encryption – One Click Free SSL Certificate & SSL / HTTPS Redirect to fix Insecure Content<= 7.8.5.10
One Click Free SSL Certificate & SSL / HTTPS Redirect, Security & SSL Scan plugin <= 7.8.5.10 - One Click SSL & Force HTTPS <= 7.8.5.10 - Missing Authorization to Authenticated (Subscriber+) SSL Setup Tampering vulnerability
5.4
17 hours ago
LearnPress<= 4.3.5
Authenticated (Subscriber+) Payment Bypass to Free Course Enrollment vulnerability
4.3
19 hours ago