Pricing
Case studies
Login
Start trial
The leading open source vulnerability database
Instantly mitigate vulnerabilities in WordPress websites with Patchstack.
See pricing
Rated 4.9
Total
35,876
Mitigations
Mitigation rules
13,238
No official fix
10,072
In triage
1,596
Published soon
0
Stats
WordPress stats
Search
Everything
Vulnerabilities
Priority
CVSS
0
10
Mitigation available
Exploited
Clear
Affected software | Vulnerability
Risk
Disclosed
Pretty Google Calendar
<= 2.0.0
Missing Authorization to Unauthenticated Google API Key Exposure vulnerability
5.3
4 minutes ago
Quran Gateway
<= 1.5
Cross-Site Request Forgery to Settings Update vulnerability
4.3
4 minutes ago
RESPONSIVE AND SWIPE SLIDER!
<= 1.0.2
Authenticated (Editor+) Stored Cross-Site Scripting via Shortcode vulnerability
5.9
6 minutes ago
WP DB Booster
<= 1.0.1
Cross-Site Request Forgery to Database Cleanup vulnerability
4.3
11 minutes ago
Amazon affiliate lite
<= 1.0.0
Cross-Site Request Forgery to Plugin Settings Update vulnerability
4.3
12 minutes ago
Amazon affiliate lite
<= 1.0.0
Authenticated (Administrator+) Stored Cross-Site Scripting vulnerability
5.9
13 minutes ago
F70 Lead Document Download
<= 1.4.4
Missing Authorization to Unauthenticated Arbitrary Media File Download vulnerability
5.3
16 minutes ago
Slimstat Analytics
<= 5.3.2
Unauthenticated Stored Cross-Site Scripting vulnerability
7.1
14 hours ago
Html5 Audio Player
2.4.0-2.5.1
Unauthenticated Server-Side Request Forgery vulnerability
7.2
14 hours ago
Hummingbird
<= 3.18.0
Unauthenticated Sensitive Information Exposure via Log File vulnerability
7.5
14 hours ago
Image Photo Gallery Final Tiles Grid
<= 3.6.7
Missing Authorization to Authenticated (Contributor+) Gallery Management vulnerability
5.4
23 hours ago
myCred
<= 2.9.7.1
Missing Authorization to Sensitive Information Exposure vulnerability
4.3
23 hours ago
Colibri Page Builder
<= 1.0.345
Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode vulnerability
6.5
23 hours ago
BA Book Everything
<= 1.8.14
Authenticated (Contributor+) Stored Cross-Site Scripting via babe-search-form Shortcode vulnerability
6.5
23 hours ago
Simply Schedule Appointments
<= 1.6.9.16
Missing Authorization to Unauthenticated Sensitive Information Exposure vulnerability
5.3
23 hours ago
Sweet Energy Efficiency
<= 1.0.6
Missing Authorization to Authenticated (Subscriber+) Arbitrary Graph Deletion vulnerability
4.3
1 day ago
Prime Slider – Addons For Elementor
<= 4.0.9
Authenticated (Subscriber+) Server-Side Request Forgery vulnerability
4.3
1 day ago
HUSKY
<= 1.3.7.3
Authenticated (Subscriber+) Insecure Direct Object Reference via 'woof_add_subscr' vulnerability
4.3
1 day ago
Ultimate Member
<= 2.11.0
Authenticated (Subscriber+) Stored Cross-Site Scripting via 'value' vulnerability
6.5
1 day ago
Demo Importer Plus
<= 2.0.8
Missing Authorization to Authenticated (Subscriber+) Site Reset and Privilege Escalation vulnerability
8.8
1 day ago
Load more