The leading open source vulnerability database

Instantly mitigate vulnerabilities in WordPress websites with Patchstack.

Total48,109
Mitigations15,598
Stats
CVSS0
10
Affected software | Vulnerability
RiskDisclosed
Fusion Builder<= 3.15.3
Unauthenticated Arbitrary File Deletion via Form Entry Value vulnerability
8.6
1 hour ago
WP EasyPay<= 4.4.0
Cross Site Request Forgery (CSRF) vulnerability
6.5
4 hours ago
Media LIbrary Assistant<= 3.35
SQL Injection vulnerability
8.5
5 hours ago
Ocean Product Sharing<= 2.2.2
Cross Site Scripting (XSS) vulnerability
5.9
9 hours ago
CF7 to Webhook<= 5.0.0
Unauthenticated Server-Side Request Forgery vulnerability
7.2
10 hours ago
Customize My Account for WooCommerce<= 4.3.6
Reflected Cross-Site Scripting vulnerability
7.1
10 hours ago
Offload, AI &amp; Optimize with Cloudflare Images<= 1.10.2
Authenticated (Author+) Remote Code Execution vulnerability
8.8
10 hours ago
Contest Gallery<= 30.0.2
Authenticated (Author+) Privilege Escalation vulnerability
7.2
10 hours ago
Slideshow Gallery<= 1.8.5
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
23 hours ago
Fancy Testimonials<= 1.0
Authenticated (Author+) Stored Cross-Site Scripting vulnerability
5.9
1 day ago
Appointment Booking Calendar<= 1.4.01
Authenticated (Contributor+) Sensitive Information Exposure vulnerability
4.3
1 day ago
PowerPress Podcasting<= 11.16.8
Authenticated (Author+) Stored Cross-Site Scripting vulnerability
5.9
1 day ago
UsersWP<= 1.2.63
Insecure Direct Object Reference to Authenticated (Editor+) Arbitrary User Avatar/Banner Reset vulnerability
2.7
1 day ago
Customize My Account for WooCommerce<= 4.3.6
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
1 day ago
Tutor LMS<= 3.9.11
Authenticated (Administrator+) SQL Injection vulnerability
7.6
1 day ago
Simple Membership<= 4.7.5
Missing Authorization to Unauthenticated Arbitrary Member Account Deactivation vulnerability
5.3
1 day ago
Services Section block<= 1.4.4
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
1 day ago
PressPrimer Quiz – AI Quiz Maker, Exam Builder & LMS Assessment Plugin<= 2.3.0
Insecure Direct Object Reference to Authenticated (Custom+) Arbitrary Modification vulnerability
4.3
1 day ago
Orbit Fox by ThemeIsle<= 3.0.6
Authenticated (Administrator+) Stored Cross-Site Scripting vulnerability
5.9
1 day ago
Advanced Order Export For WooCommerce<= 4.0.10
Authenticated (Shop Manager+) SQL Injection vulnerability
7.6
1 day ago