Pricing
Case studies
Login
Start trial
The leading open source vulnerability database
Instantly mitigate vulnerabilities in WordPress websites with Patchstack.
See pricing
Rated 4.9
Total
50,243
Mitigations
Mitigation rules
16,213
No official patch
13,190
In triage
1,139
Published soon
10
Stats
WordPress stats
Search
Everything
Vulnerabilities
Priority
CVSS
0
10
Mitigation available
Exploited
Clear filters
Affected software | Vulnerability
Risk
Disclosed
Booking Calendar Contact Form
<= 1.0.23
Reflected Cross-Site Scripting vulnerability
7.1
2 hours ago
WP Event SOlution
< 4.1.16
Unauthenticated Payment Bypass vulnerability
5.3
2 hours ago
WP Travel
< 11.8.1
Unauthenticated Payment Bypass vulnerability
5.3
2 hours ago
Hide My WP Ghost
< 7.0.05
IP Address Spoofing vulnerability
5.4
2 hours ago
Booking Calendar Contact Form
<= 1.0.23
Authenticated (Subscriber+) Stored Cross-Site Scripting vulnerability
6.5
2 hours ago
Ultimate Product Catalogue
<= 3.8.6
Authenticated (Contributor+) Arbitrary File Upload vulnerability
10
2 hours ago
Booking Calendar Contact Form
<= 1.1.24
Unauthenticated Stored Cross-Site Scripting vulnerability
7.1
2 hours ago
Zoner - Real Estate
< 4.2
WordPress Zoner - Real Estate WordPress Theme theme < 4.2 - Real Estate WordPress Theme < 4.2 - Cross-Site Scripting vulnerability
7.1
2 hours ago
Contact Form Builder, Contact Widget
<= 1.6.1
Reflected Cross-Site Scripting vulnerability
7.1
2 hours ago
Flights & Hotels Booking WP Plugin
<= 2.3
Reflected Cross-Site Scripting vulnerability
7.1
2 hours ago
WOLF
< 1.1.0
WordPress WOLF plugin < 1.1.0 - WordPress Posts Bulk Editor and Manager < 1.1.0 - Stored XSS vulnerability
7.1
2 hours ago
International Sms For Contact Form 7 Integration
<= 1.2
Reflected Cross-Site Scripting vulnerability
7.1
2 hours ago
FluentForm
<= 6.2.7
Unauthenticated Stored Cross-Site Scripting vulnerability
7.1
2 hours ago
Easy Digital Downloads
<= 3.6.9
Authenticated (Shop Manager+) Arbitrary File Upload vulnerability
9.1
3 hours ago
Wholesale For WooCommerce Lite – B2B & B2C Solution
<= 2.0.5
Authenticated (Author+) Privilege Escalation vulnerability
7.2
3 hours ago
Database for CF7
<= 1.2.6
Unauthenticated Stored Cross-Site Scripting vulnerability
7.1
3 hours ago
Google Tag Manager
<= 1.22.3
Unauthenticated Stored Cross-Site Scripting vulnerability
7.1
5 hours ago
Academy LMS
<= 3.8.2
Subscriber+ Sensitive Information Disclosure vulnerability
6.5
5 hours ago
ElementsKit Elementor addons Lite
< 3.10.01
Subsite Administrator+ PHP Code Injection vulnerability
7.2
5 hours ago
JS Help Desk
< 3.1.4
Unauthenticated Arbitrary Ticket File Attachment Upload vulnerability
5.3
5 hours ago
Load more