The leading open source vulnerability database

Instantly mitigate vulnerabilities in WordPress websites with Patchstack.

Total35,935
Mitigations13,240
Stats
CVSS0
10
Affected software | Vulnerability
RiskDisclosed
WP JobHunt<= 7.7
Authenticated (Candidate+) Insecure Direct Object Reference vulnerability
4.3
12 minutes ago
WP JobHunt<= 7.7
Missing Authorization to Authenticated (Candidate+) Stored Cross-Site Scripting via 'status' vulnerability
6.5
31 minutes ago
Nika<= 1.2.14
Local File Inclusion vulnerability
7.5
7 hours ago
Diza<= 1.3.15
Local File Inclusion vulnerability
7.5
7 hours ago
Responsive Posts Carousel Pro<= 15.2
Cross Site Scripting (XSS) vulnerability
6.5
7 hours ago
WPBulky<= 1.1.13
SQL Injection vulnerability
7.6
7 hours ago
VPSUForm<= 3.2.24
Sensitive Data Exposure vulnerability
6.5
7 hours ago
HAPPY<= 1.0.9
Broken Access Control vulnerability
5.3
7 hours ago
Chakra test<= 1.0.1
Broken Access Control vulnerability
4.3
7 hours ago
Beaver Builder<= 2.9.4.1
Missing Authorization to Authenticated (Subscriber+) Arbitrary Post Update vulnerability
8.1
19 hours ago
WooMulti<= 1.7
Authenticated (Subscriber+) Arbitrary File Deletion vulnerability
7.7
19 hours ago
Happy Addons for Elementor<= 3.20.3
Authenticated (Contributor+) Stored Cross-Site Scripting via Custom JS vulnerability
6.5
19 hours ago
Restrict Content<= 3.2.15
Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcodes vulnerability
6.5
19 hours ago
Calendar<= 1.3.16
Authenticated (Contributor+) Stored Cross-Site Scripting via 'event_desc' vulnerability
6.5
19 hours ago
Premium Addons for Elementor<= 4.11.53
Cross-Site Request Forgery via 'insert_inner_template' vulnerability
4.3
19 hours ago
WooCommerce<= 10.4.2
Sensitive Data Exposure vulnerability
6.5
1 day ago
Gutenverse Form<= 2.3.1
Broken Access Control vulnerability
6.5
3 days ago
Royal Elementor Addons<= 1.7.1036
Missing Authorization to Unauthenticated Media File Upload vulnerability
5.3
3 days ago
Ultimate Member<= 2.11.0
Unauthenticated Sensitive Information Exposure vulnerability
5.3
3 days ago
FiboSearch – Ajax Search for WooCommerce<= 1.32.0
Authenticated (Contributor+) Stored Cross-Site Scripting via thegem_te_search Shortcode vulnerability
6.5
3 days ago