Pricing
Case studies
Login
Start trial
The leading open source vulnerability database
Instantly mitigate vulnerabilities in WordPress websites with Patchstack.
See pricing
Rated 4.9
Total
52,437
Mitigations
Mitigation rules
17,088
No official patch
13,368
In triage
1,359
Published soon
11
Stats
WordPress stats
Search
Everything
Vulnerabilities
Priority
CVSS
0
10
Mitigation available
Exploited
Clear filters
Affected software | Vulnerability
Risk
Disclosed
Paid Member Subscriptions
< 3.0.9
Unauthenticated Membership Payment Bypass vulnerability
5.3
59 minutes ago
Autopay
< 5.0.1
Unauthenticated Cross-Customer Order Payment Parameter Disclosure and Deletion vulnerability
6.5
59 minutes ago
Robokassa payment gateway for Woocommerce
< 1.8.9
Unauthenticated Payment Bypass vulnerability
3.7
59 minutes ago
RestroPress
<= 3.4.6
Unauthenticated Order Enumeration and Order Note Modification vulnerability
6.5
59 minutes ago
Hide My WP Ghost
7.0.10
Unauthenticated Firewall, Threat Detection and URL Hiding Bypass vulnerability
5.3
1 hour ago
Hide My WP Ghost
< 7.0.11
Unauthenticated URL Hiding Bypass vulnerability
5.3
1 hour ago
Clean Login
< 1.19
Unauthenticated CAPTCHA Bypass vulnerability
5.3
1 hour ago
Price Drop Alert for WooCommerce
<= 1.1
Unauthenticated SQL Injection vulnerability
9.3
3 hours ago
Login/Signup Popup
< 4.0.2
Unauthenticated Account Takeover via Password Reset Verification State Keyed on a Client-Supplied Address Header vulnerability
8.1
3 hours ago
WCFM Marketplace
<= 3.8.2
Unauthenticated SQL Injection vulnerability
9.3
3 hours ago
Login/Signup Popup
< 4.0.2
Unauthenticated Account Takeover via Password Reset Code Brute Force vulnerability
8.1
4 hours ago
InfiniteWP Client
< 1.13.6
Unauthenticated Administrator Account Takeover on Multisite vulnerability
8.1
4 hours ago
SoftMarket — Digital Marketplace
<= 1.0.0
Unauthenticated Account Takeover via Email Verification Bypass vulnerability
9.8
4 hours ago
To Do List Member
1.4-1.6
Unauthenticated Stored XSS, File Listing and Deletion vulnerability
8.8
4 hours ago
PuppyFW
<= 0.4.4
Subscriber+ Arbitrary Blog Options Update and Deletion Leading to Privilege Escalation vulnerability
8.8
4 hours ago
Out-of-the-Box
2.0-3.8.3
WordPress WP Cloud Plugins - Dropbox (Out-of-the-Box) plugin 2.0-3.8.3 - Authenticated (Subscriber+) Arbitrary File Upload vulnerability
8.8
4 hours ago
Lets-Box
2.0-3.8.3
WordPress WP Cloud Plugins - Box (Lets-Box) plugin 2.0-3.8.3 - Authenticated (Subscriber+) Arbitrary File Upload vulnerability
8.8
4 hours ago
Share-one-Drive
2.0-3.8.3
Authenticated (Subscriber+) Arbitrary File Upload vulnerability
8.8
4 hours ago
Use-your-Drive
2.0-3.8.3
Authenticated (Subscriber+) Arbitrary File Upload vulnerability
8.8
4 hours ago
wpShopGermany IT-RECHT KANZLEI
1.6-2.3
Unauthenticated RCE vulnerability
9
5 hours ago
Load more