The leading open source vulnerability database

Instantly mitigate vulnerabilities in WordPress websites with Patchstack.

Total48,133
Mitigations15,604
Stats
CVSS0
10
Affected software | Vulnerability
RiskDisclosed
WP Hotel Booking< 2.3.1
Subscriber+ Missing Authorization in Multiple AJAX Handlers vulnerability
5.3
12 hours ago
WP Go Maps<= 10.1.01
Unauthenticated Arbitrary Record Creation vulnerability
5.3
12 hours ago
Bit Integrations<= 2.8.7
Unauthenticated Server-Side Request Forgery vulnerability
7.2
13 hours ago
BetterDocs Pro<= 3.8.0
Unauthenticated Local File Inclusion vulnerability
10
14 hours ago
STRABL – A checkout solution<= 4.5
Unauthenticated Arbitrary Webhook Creation vulnerability
5.3
1 day ago
2Download Connector for 2DL Hosted Checkout<= 0.1.5
Missing Authorization to Unauthenticated Sensitive Customer Subscription Data Exposure vulnerability
5.3
1 day ago
Fusion Builder<= 3.15.3
Unauthenticated Arbitrary File Deletion via Form Entry Value vulnerability
8.6
1 day ago
Royal Elementor Addons1.7.1058-1.7.1059
Authenticated (Contributor+) Arbitrary File Read vulnerability
6.5
1 day ago
Creavi Appointment Booking Calendar<= 1.4.4
Authenticated (Author+) Stored Cross-Site Scripting vulnerability
5.9
1 day ago
Woosa – Marktplaats for WooCommerce<= 2.0.5
Authenticated (Administrator+) Arbitrary File Read vulnerability
4.9
1 day ago
WP DSGVO Tools (GDPR)<= 3.1.39
Missing Authorization to Unauthenticated Sensitive Personal Data Disclosure vulnerability
5.3
1 day ago
Bogo<= 3.9.1
Missing Authorization to Authenticated (Subscriber+) Sensitive Information Exposure vulnerability
4.3
1 day ago
Advanced Import<= 1.4.6
Authenticated (Author+) Server-Side Request Forgery vulnerability
5.5
1 day ago
Blocksy Companion<= 2.1.45
Authenticated (Editor+) Stored Cross-Site Scripting vulnerability
5.9
1 day ago
BetterDocs<= 4.5.3
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
1 day ago
Classified Listing<= 5.4.2
Missing Authorization to Authenticated (Subscriber+) Feature Modification vulnerability
4.3
1 day ago
WP EasyPay<= 4.5.0
Cross Site Request Forgery (CSRF) vulnerability
6.5
1 day ago
Media LIbrary Assistant<= 3.35
SQL Injection vulnerability
8.5
1 day ago
User Admin Simplifier<= 3.0.0
Cross-Site Request Forgery vulnerability
4.3
1 day ago
Ocean Product Sharing<= 2.2.2
Cross Site Scripting (XSS) vulnerability
5.9
1 day ago