The leading open source vulnerability database

Instantly mitigate vulnerabilities in WordPress websites with Patchstack.

Total47,901
Mitigations15,481
Stats
CVSS0
10
Affected software | Vulnerability
RiskDisclosed
Email Encoder Premium< 0.3.12
Unauthenticated Stored XSS vulnerability
7.1
13 hours ago
Email Address Encoder< 1.0.25
Unauthenticated Stored XSS vulnerability
7.1
13 hours ago
Recipe Card Blocks for Gutenberg & Elementor<= 3.4.13
Authenticated (Author+) Stored Cross-Site Scripting vulnerability
5.9
2 days ago
WP Maps<= 4.9.4
Authenticated (Admin+) Stored Cross-Site Scripting vulnerability
5.9
3 days ago
MapPress Maps for WordPress<= 2.96.6
Unauthenticated Insecure Direct Object Reference vulnerability
5.3
3 days ago
SEO Plugin by Squirrly SEO<= 12.4.16
Missing Authorization to Authenticated (Contributor+) Privileged Cloud API Operations vulnerability
4.3
3 days ago
Klamra Paycal for Aspaclaria<= 1.1.4
Insecure Direct Object Reference to Authenticated (Subscriber+) Sensitive Information Exposure vulnerability
4.3
3 days ago
Smart Slider 3<= 3.5.1.36
Authenticated (Administrator+) Path Traversal to Arbitrary File Read vulnerability
4.9
3 days ago
Essential Addons for Elementor<= 6.6.4
Missing Authorization to Unauthenticated Information Exposure vulnerability
5.3
3 days ago
LearnPress<= 4.3.6
Unauthenticated Sensitive Information Exposure vulnerability
5.3
3 days ago
Quick Playground<= 1.3.4
Authenticated (Administrator+) Arbitrary File Read vulnerability
4.4
3 days ago
Mobile DJ Manager<= 1.7.8.3
Authenticated (Administrator+) Arbitrary File Upload vulnerability
9.1
3 days ago
LearnPress Export Import<= 4.1.4
Authenticated (Administrator+) Path Traversal to Arbitrary File Read vulnerability
4.9
3 days ago
EmbedPress<= 4.5.3
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
3 days ago
Drag and Drop Multiple File Upload – Contact Form 7<= 1.3.9.7
Authenticated (Administrator+) Stored Cross-Site Scripting vulnerability
5.9
3 days ago
Contact Form by WPForms<= 1.10.0.4
Unauthenticated Insufficient Verification of Data Authenticity vulnerability
5.3
3 days ago
OptinCraft – Drag & Drop Optins & Popup Builder for WordPress<= 1.2.0
Authenticated (Administrator+) SQL Injection vulnerability
7.6
3 days ago
Click to Chat<= 4.39
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
6.5
3 days ago
LearnPress Export Import<= 4.1.4
Authenticated (Administrator+) PHP Object Injection vulnerability
6.6
3 days ago
Page-list<= 6.2
Missing Authorization to Authenticated (Contributor+) Sensitive Information Disclosure vulnerability
4.3
3 days ago