Pricing
Case studies
Login
Start trial
The leading open source vulnerability database
Instantly mitigate vulnerabilities in WordPress websites with Patchstack.
See pricing
Rated 4.9
Total
52,733
Mitigations
Mitigation rules
17,207
No official patch
13,372
In triage
1,348
Published soon
33
Stats
WordPress stats
Search
Everything
Vulnerabilities
Priority
CVSS
0
10
Mitigation available
Exploited
Clear filters
Affected software | Vulnerability
Risk
Disclosed
Paid Member Subscriptions
< 3.1.0
Unauthenticated reCAPTCHA Bypass vulnerability
5.3
26 minutes ago
Paymob for WooCommerce
< 4.1.14
Unauthenticated Payment Bypass vulnerability
5.3
26 minutes ago
Forminator
< 1.57.2.1
Unauthenticated Poll Vote Limit Bypass vulnerability
5.3
26 minutes ago
Ninja Tables
< 5.2.17
Unauthenticated Arbitrary Shortcode Execution vulnerability
5.6
26 minutes ago
GTranslate
< 5.0.1
Unauthenticated Arbitrary Shortcode Execution vulnerability
4.8
34 minutes ago
WPDM – Premium Packages
7.0.0-7.2.0
Unauthenticated PayPal Webhook Signature Verification Bypass vulnerability
5.3
59 minutes ago
Easy Hide Login
< 1.7
Login Page Protection Bypass / Hidden URL Disclosure vulnerability
5.3
59 minutes ago
Newsletters
< 4.18.1
Unauthenticated Subscriber Record Overwrite and PII Disclosure vulnerability
6.5
1 hour ago
Payment Plugins for PayPal WooCommerce
< 2.0.27
Unauthenticated Payment Hijacking vulnerability
6.5
2 hours ago
eesy_ID2WP – Publish InDesign HTML5
<= 1.0.3
Unauthenticated Path Traversal to Arbitrary File Read vulnerability
7.5
2 hours ago
Visual Composer Website Builder
<= 45.16.0
Unauthenticated Local File Inclusion vulnerability
9.8
2 hours ago
Directorist
3.1.0-8.9.4
Subscriber+ Arbitrary Listing Deletion vulnerability
6.5
2 hours ago
Jet Form Builder Stripe Gateway
< 1.1.0
Unauthenticated Blind SQLi vulnerability
8.6
2 hours ago
EthPress – Web3 Login
<= 2.3.5
Unauthenticated Authentication Bypass vulnerability
8.1
2 hours ago
WP OAuth Server
< 6.4.0
Subscriber+ Cross-User Account Takeover vulnerability
9
2 hours ago
YAHMAN Add-ons
< 0.9.31
Unauthenticated Arbitrary File Upload vulnerability
9
2 hours ago
elysia
< 1.4.29
NPM: elysia has Inefficient Algorithmic Complexity and Interpretation Conflict
7.5
11 hours ago
@fecommunity/reactpress
<= 3.6.0
NPM: ReactPress has SQL injection via dynamic column names in TypeORM query builders
7.5
11 hours ago
Spectra
<= 2.20.0
Authenticated (Contributor+) Sensitive Information Exposure vulnerability
7.5
12 hours ago
Kirki
<= 6.2.0
Unauthenticated Blind Server-Side Request Forgery vulnerability
5.4
12 hours ago
Load more