Pricing
Case studies
Login
Start trial
The leading open source vulnerability database
Instantly mitigate vulnerabilities in WordPress websites with Patchstack.
See pricing
Rated 4.9
Total
35,835
Mitigations
Mitigation rules
13,230
No official fix
10,089
In triage
1,512
Published soon
58
Stats
WordPress stats
Search
Everything
Vulnerabilities
Priority
CVSS
0
10
Mitigation available
Exploited
Clear
Affected software | Vulnerability
Risk
Disclosed
WP to LinkedIn Auto Publish
<= 1.9.8
Reflected Cross-Site Scripting via PostMessage vulnerability
7.1
2 hours ago
Social Media Auto Publish
<= 3.6.5
Reflected Cross-Site Scripting via PostMessage vulnerability
7.1
2 hours ago
WP3D Model Import Viewer
<= 1.0.7
Authenticated (Contributor+) Arbitrary File Upload vulnerability
9.9
2 hours ago
Filter & Grids
<= 3.2.0
Unauthenticated SQL Injection vulnerability
9.3
2 hours ago
Export WP Page to Static HTML/CSS
<= 4.3.4
Unauthenticated Cookie Exposure via Log File vulnerability
9.8
2 hours ago
Postem Ipsum
<= 3.0.1
Missing Authorization to Authenticated (Subscriber+) Privilege Escalation in postem_ipsum_generate_users vulnerability
8.8
2 hours ago
افزونه پیامک ووکامرس فوق حرفه ای (جدید) payamito sms woocommerce
<= 1.3.5
Unauthenticated Time-Based Blind SQL Injection vulnerability
9.3
2 hours ago
wpForo Forum
<= 2.4.12
Unauthenticated SQL Injection vulnerability
9.3
2 hours ago
URL Shortener
<= 3.0.7
Unauthenticated SQL Injection vulnerability
9.3
2 hours ago
WP Directory Kit
<= 1.4.7
Unauthenticated SQL Injection vulnerability
9.3
3 hours ago
Doubly - Cross Domain Copy Paste for WordPress
<= 1.0.46
Authenticated (Subscriber+) PHP Object Injection via ZIP File Import vulnerability
8.8
3 hours ago
JAY Login & Register
<= 2.4.01
Authentication Bypass via Cookie vulnerability
9.8
3 hours ago
Login Lockdown
<= 2.14
IP Block Bypass vulnerability
5.3
7 hours ago
WPS Visitor Counter
<= 1.4.8
Reflected XSS vulnerability
7.1
7 hours ago
HelloLeads CRM Form Shortcode
<= 1.0
Unauthenticated Settings Reset vulnerability
6.5
7 hours ago
MailerLite – WooCommerce integration
<= 3.1.3
WordPress MailerLite - WooCommerce integration plugin <= 3.1.3 - Missing Authorization to Data Deletion vulnerability
6.5
7 hours ago
Fancy Product Designer
<= 6.4.8
Unauthenticated Information Disclosure via 'url' Parameter vulnerability
5.9
8 hours ago
Fancy Product Designer
<= 6.4.8
Unauthenticated Server-Side Request Forgery via Race Condition vulnerability
7.2
11 hours ago
LearnPress
<= 4.3.1
Authenticated (Subscriber+) Stored Cross-Site Scripting via get_profile_social vulnerability
6.5
11 hours ago
Booking Calendar
<= 10.14.8
Unauthenticated SQL Injection via dates_to_check vulnerability
9.3
11 hours ago
Load more