Pricing
Case studies
Login
Start trial
The leading open source vulnerability database
Instantly mitigate vulnerabilities in WordPress websites with Patchstack.
See pricing
Rated 4.9
Total
50,162
Mitigations
Mitigation rules
16,169
No official patch
13,192
In triage
1,135
Published soon
6
Stats
WordPress stats
Search
Everything
Vulnerabilities
Priority
CVSS
0
10
Mitigation available
Exploited
Clear filters
Affected software | Vulnerability
Risk
Disclosed
Paid Memberships Pro
<= 3.8.1
Authenticated (Subscriber+) Stored Cross-Site Scripting vulnerability
6.5
10 minutes ago
Tablesome
< 1.1.31
Unauthenticated Post Creation and Modification vulnerability
6.5
19 minutes ago
Contact Form Entries
< 1.5.3
Reflected XSS vulnerability
7.1
22 minutes ago
Quiz And Survey Master
< 11.1.3
Unauthenticated User Enumeration and Password Oracle vulnerability
5.3
23 minutes ago
Bookly
< 27.8
Unauthenticated SQL Injection vulnerability
9.3
24 minutes ago
Hotel Booking Lite
< 6.0.4
Subscriber+ Sensitive Data Disclosure vulnerability
7.5
40 minutes ago
Remote API
<= 0.2
Unauthenticated PHP Object Injection vulnerability
9.8
1 hour ago
Ultimate Addons for WPBakery Page Builder
< 3.21.4
Unauthenticated Custom Icon Font Deletion vulnerability
6.5
1 hour ago
Booking Calendar Contact Form
<= 1.0.23
Shortcode SQL Injection vulnerability
9.3
1 hour ago
Booking Calendar Contact Form
< 1.0.24
Blind SQL Injection vulnerability
9.3
3 hours ago
Single Personal Message
<= 1.0.3
Authenticated (Subscriber+) SQL Injection vulnerability
8.5
3 hours ago
Photocart Link
<= 1.6
Unauthenticated Local File Inclusion vulnerability
8.1
3 hours ago
Apptha Slider Gallery
<= 1.0
Unauthenticated SQL Injection vulnerability
9.3
4 hours ago
Backup Migration
<= 1.2.8
Sensitive Information Exposure vulnerability
7.5
4 hours ago
Brandfolder
<= 3.0
Unauthenticated Local File Inclusion vulnerability
8.1
4 hours ago
WP with Spritz
<= 1.0
Unauthenticated Local File Inclusion vulnerability
8.1
4 hours ago
Simple Backup
<= 2.7.11
Unauthenticated Arbitrary File Download vulnerability
7.5
4 hours ago
BuddyPress
<= 14.5.0
Authenticated (Subscriber+) PHP Object Injection vulnerability
8.8
4 hours ago
Dharma Booking
<= 2.28.3
Unauthenticated Local File Inclusion vulnerability
8.1
4 hours ago
Membership by Supsystic
<= 1.4.7
Unauthenticated SQL Injection vulnerability
9.3
4 hours ago
Load more