The leading open source vulnerability database

Instantly mitigate vulnerabilities in WordPress websites with Patchstack.

Total49,907
Mitigations16,087
Stats
CVSS0
10
Affected software | Vulnerability
RiskDisclosed
WP Compress< 7.10.04
Reflected XSS vulnerability
7.1
2 hours ago
Sina Extension for Elementor< 3.10.2
Reflected XSS vulnerability
7.1
2 hours ago
MPG< 4.1.8
Reflected XSS vulnerability
7.1
2 hours ago
Simply Schedule Appointments< 1.6.12.4
Unauthenticated Stored XSS vulnerability
7.1
2 hours ago
WowOptin< 1.4.38
Unauthenticated Opt-in Deactivation and Template Row Injection vulnerability
7.5
2 hours ago
Software Issue Manager< 5.1.0
Unauthenticated SQL Injection vulnerability
9.3
2 hours ago
Document Gallery< 5.1.1
Reflected XSS vulnerability
7.1
3 hours ago
Praison SEO WordPress< 5.0.7
Unauthenticated Multiple Missing Authorization (Post Permalink Modification, Plugin Settings Disclosure) vulnerability
7.5
3 hours ago
CAFEHAUS API<= 1.0.0
Unauthenticated Arbitrary User Password Reset vulnerability
9.8
3 hours ago
ProfileGrid < 5.9.9.7
Unauthenticated Payment Bypass and Forced Group Membership vulnerability
6.5
3 hours ago
WooCommerce Clover Payment Gateway< 1.3.6
Unauthenticated Payment Bypass vulnerability
7.5
3 hours ago
ProfilePress< 4.16.18
Unauthenticated Privilege Escalation vulnerability
9.8
3 hours ago
Masteriyo - LMS< 2.3.1
Unauthenticated Arbitrary User Session Termination (Denial of Service) vulnerability
9.1
3 hours ago
security-ninja-premium< 5.290
Two-Factor Authentication Bypass vulnerability
7.5
6 hours ago
微信二维码登陆<= 1.3
Unauthenticated Account Takeover vulnerability
9.8
6 hours ago
FacturaONE para WooCommerce con VeriFactu< 5.37
Unauthenticated Remote Code Execution vulnerability
10
6 hours ago
Realtyna Organic IDX plugin< 5.3.0
Unauthenticated Arbitrary File Upload to Remote Code Execution vulnerability
10
6 hours ago
Post Status Notifier Lite< 1.13.0
Reflected XSS vulnerability
7.1
6 hours ago
Custom Fields Account Registration For Woocommerce< 1.4
Unauthenticated Privilege Escalation vulnerability
9.8
6 hours ago
Advanced Responsive Video Embedder10.8.7
Unauthenticated Authentication Bypass via Hardcoded Backdoor in '_wplogin' Parameter vulnerability
9.8
7 hours ago