The leading open source vulnerability database

Instantly mitigate vulnerabilities in WordPress websites with Patchstack.

Total39,324
Mitigations14,611
Stats
CVSS0
10
Affected software | Vulnerability
RiskDisclosed
Code Embed<= 2.5.1
Authenticated (Contributor+) Stored Cross-Site Scripting via Custom Fields vulnerability
6.5
6 hours ago
Post SMTP<= 3.8.0
Missing Authorization to Authenticated (Subscriber+) Office 365 OAuth Configuration Overwrite vulnerability
5.4
6 hours ago
JSON Content Importer< 2.0.10
Contributor+ Stored XSS vulnerability
6.5
6 hours ago
Contextual Related Posts< 4.2.2
Broken Access Control vulnerability
5.3
1 day ago
Writeprint Stylometry<= 0.1
Reflected Cross-Site Scripting via 'p' Parameter vulnerability
7.1
1 day ago
[CR]Paid Link Manager<= 0.5
Reflected Cross-Site Scripting vulnerability
7.1
1 day ago
WP Go Maps<= 10.0.05
Missing Authorization to Authenticated (Subscriber+) Stored Cross-Site Scripting via admin_post_wpgmza_save_settings vulnerability
6.5
1 day ago
Duplicate Post<= 4.5
Authenticated (Contributor+) Missing Authorization to Arbitrary Post Duplication and Overwrite vulnerability
5.4
1 day ago
Subscriptions for WooCommerce<= 1.9.2
Missing Authorization to Unauthenticated Arbitrary Subscription Cancellation vulnerability
5.3
1 day ago
Royal Elementor Addons<= 1.7.1049
WordPress Royal Addons for Elementor - Addons and Templates Kit for Elementor plugin <= 1.7.1049 - Missing Authorization to Unauthenticated Custom Post Type Contents Exposure vulnerability
5.3
1 day ago
XStore Core<= 5.6.4
Reflected Cross Site Scripting (XSS) vulnerability
7.1
2 days ago
Product Slider for WooCommerce<= 1.13.60
Broken Access Control vulnerability
6.5
2 days ago
Automated FedEx live/manual rates with shipping labels<= 5.1.8
Broken Access Control vulnerability
7.3
2 days ago
Mixtape<= 2.1
Local File Inclusion vulnerability
8.1
2 days ago
Moments<= 2.2
Local File Inclusion vulnerability
8.1
2 days ago
Ave Core<= 2.9.1
Broken Access Control vulnerability
6.3
2 days ago
Education Zone<= 1.3.8
Broken Access Control vulnerability
6.5
2 days ago
avalex<= 3.1.3
Broken Access Control vulnerability
6.5
2 days ago
EventPrime<= 4.2.8.0
PHP Object Injection vulnerability
9.8
2 days ago
Booster for WooCommerce< 7.11.3
Broken Access Control vulnerability
5.3
2 days ago