Pricing
Case studies
Login
Start trial
The leading open source vulnerability database
Instantly mitigate vulnerabilities in WordPress websites with Patchstack.
See pricing
Rated 4.9
Total
42,880
Mitigations
Mitigation rules
17,023
No official patch
11,517
In triage
1,266
Published soon
2
Stats
WordPress stats
Search
Everything
Component type
Vulnerabilities
Priority
CVSS
0
10
Mitigation available
Exploited
Clear filters
Affected software | Vulnerability
Risk
Disclosed
Advanced Custom Fields: Extended PRO
<= 0.9.2.6
Unauthenticated Remote Code Execution vulnerability
10
51 minutes ago
WP Event SOlution
<= 4.1.23
WordPress Eventin - Event Calendar, Tickets, Registration, Booking & WooCommerce plugin <= 4.1.23 - Authenticated (Subscriber+) Privilege Escalation via map_meta_cap Filter vulnerability
7.5
13 hours ago
Album Cover Finder
<= 0.7.0
Unauthenticated SQLi vulnerability
9.3
22 hours ago
WPStoreCart
<= 5.0.7
Unauthenticated PHP Object Injection vulnerability
9.8
22 hours ago
SAMO Forms
<= 1.0.0
Unauthenticated SQLi vulnerability
9.3
22 hours ago
Frontegg SAML SSO
<= 1.0.1
Unauthenticated Account Takeover vulnerability
9.8
22 hours ago
Zonify – Amazon Product Importer for WooCommerce
< 1.0.5
Unauthenticated Account Login Token Disclosure vulnerability
7.5
22 hours ago
Code Monkeys Proposals
<= 1.0.1
Subscriber+ Arbitrary File Deletion vulnerability
8.6
22 hours ago
Gpx2Graphics
<= 0.3
Arbitrary File Upload vulnerability
10
22 hours ago
WebTotem Backups
<= 1.0.1
Subscriber+ Arbitrary File Deletion vulnerability
8.6
22 hours ago
DS Ad Rotator
<= 0.8
Unauthenticated Arbitrary File Upload vulnerability
10
22 hours ago
CryptoPayment Gateway
1.2.1-1.2.2
Unauthenticated Arbitrary File Deletion and Settings Update vulnerability
8.6
22 hours ago
Yogeta WP Cloud
<= 1.0
Unauthenticated Arbitrary File Download vulnerability
8.6
22 hours ago
WP images upload on piclect
<= 1.0
Unauthenticated Arbitrary File Upload vulnerability
10
22 hours ago
WP Component
<= 2.2.4
Unauthenticated Privilege Escalation vulnerability
9.8
22 hours ago
Add User Autocomplete
< 1.2
Subscriber+ Privilege Escalation vulnerability
9.8
22 hours ago
MemberPress Corporate Accounts
<= 1.5.39
Authenticated (Subscriber+) Privilege Escalation vulnerability
8.8
22 hours ago
The Events Calendar
<= 6.17.4
Unauthenticated PHP Object Injection to Remote Code Execution vulnerability
9.8
3 days ago
The Events Calendar
<= 6.17.3
Unauthenticated Code Injection to Remote Code Execution vulnerability
9.8
3 days ago
GEO my WordPress
<= 4.5.5.3
Unauthenticated Local File Inclusion vulnerability
7.5
3 days ago
Load more