The leading open source vulnerability database

Instantly mitigate vulnerabilities in WordPress websites with Patchstack.

Total50,479
Mitigations16,360
Stats
CVSS0
10
Affected software | Vulnerability
RiskDisclosed
Pods3.3-3.3.9
Unauthenticated Privilege Escalation vulnerability
9.8
1 day ago
@ooples/token-optimizer-mcp< 5.1.0
NPM: Token Optimizer MCP: Unauthenticated Path Traversal in Dashboard Session Log API Endpoints
5.3
1 day ago
@ooples/token-optimizer-mcp< 5.1.0
NPM: Token Optimizer MCP: OS command injection in smart_user via username in get-user-info
8.4
1 day ago
@budibase/server< 3.41.3
Webhook, Zapier, N8N, Slack, Discord Bypass IP Blacklist
7.1
2 days ago
Extra Product Options & Add-Ons for WooCommerce< 7.6
Arbitrary File Download vulnerability
7.5
2 days ago
Essential Real Estate<= 5.3.3
PHP Object Injection vulnerability
8.8
2 days ago
FundEngine<= 1.7.9
PHP Object Injection vulnerability
9.8
2 days ago
Theme Test Drive<= 2.9.1
Local File Inclusion vulnerability
8.1
2 days ago
Vavo Core<= 2.3.0
Local File Inclusion vulnerability
8.1
2 days ago
Quill Forms<= 5.7.1
Cross Site Scripting (XSS) vulnerability
7.1
2 days ago
WP Sort Order<= 1.3.5
Broken Access Control vulnerability
7.5
2 days ago
User Registration<= 5.2.6
Broken Authentication vulnerability
5.4
2 days ago
Starter Templates by Kadence WP<= 2.3.3
Denial of Service Attack vulnerability
7.5
2 days ago
Site Reviews<= 8.2.0
Cross Site Scripting (XSS) vulnerability
7.1
2 days ago
CTX Feed<= 6.6.46
Arbitrary File Download vulnerability
4.9
2 days ago
OttoKit<= 1.1.35
Server Side Request Forgery (SSRF) vulnerability
7.2
2 days ago
GiveWP<= 4.16.5.1
Broken Access Control vulnerability
6.5
2 days ago
GiveWP< 4.16.6
Broken Access Control vulnerability
6.5
2 days ago
Breeze<= 2.5.12
Arbitrary Content Deletion vulnerability
8.2
2 days ago
Templately<= 3.7.1
Cross Site Scripting (XSS) vulnerability
7.1
2 days ago