Pricing
WordPress securityInstantly fix and mitigate vulnerabilitiesPlugin auditingPaid auditing for WordPress vendorsManaged VDPStart a security program for your pluginsBug BountyJoin the community and earn bountiesEnterprise APIAt scale monitoring and vPatching for hostsVulnerability databaseThe latest WordPress security intelligence
Login Start trial

Universe

4.88

XP

1

Reports

0

Reports, last 90 days

#21

19 Nov, 2025
Lvl 0
0
0
0
0
Website
X
GitHub
Affected software | Vulnerability
CVE
AXP
Severity
Reported
Code Embed<= 2.3.6
Denial of Service Attack
4.88
6.5
Oct 29, 2023
Instant Images<= 5.1.0.2
Server Side Request Forgery (SSRF)
N/A
7.2
Sep 26, 2022
Activity Log<= 2.8.3
CSV Injection
N/A
7.4
No date
Polls Widget<= 1.7.4
Cross Site Scripting (XSS)
N/A
4.8
No date
Uploading SVG, WEBP and ICO files<= 1.2.1
Cross Site Scripting (XSS)
N/A
4.8
No date
Uploading SVG, WEBP and ICO files<= 1.2.1
Arbitrary File Upload
N/A
7.2
No date
Enable SVG, WebP & ICO Upload<= 1.1.0
Arbitrary File Upload
N/A
7.2
No date
Enable SVG, WebP & ICO Upload<= 1.0.6
Cross Site Scripting (XSS)
N/A
3.4
No date
WP All Import<= 3.6.7
Arbitrary Code Execution
N/A
9.1
No date
Export All URLs<= 4.1
Cross Site Scripting (XSS)
N/A
3.4
No date

Report vulnerabilities to earn bounties and rewards!

Read more

Vulnerability mitigation

  • Pricing
  • Application security (SCA)
  • RapidMitigate New
  • Threat Intelligence (API)
  • Documentation
  • VS Monarx
  • VS Imunify360
  • VS Wordfence
  • Log in

Code security

  • Managed VDP New
  • Active VDP directory
  • Security auditing
  • Compliance (CRA) New
  • Log in New

Bug bounty

  • Bug bounty
  • Leaderboard
  • Guidelines
  • Learn New
  • Report
  • Discord
  • Log in New

Use cases

  • Web developers
  • Webhosts New
  • Software vendors
  • WordPress
  • WooCommerce

Resources

  • Vulnerability database
  • Whitepaper 2025 New
  • Articles
  • Case studies New
  • Webinars New
  • Vulnerability statistics

Patchstack

  • About
  • Careers
  • Merch store
  • Media kit
  • LinkedIn
  • Facebook
  • X
© 2025 Patchstack
DPA
Privacy Policy
Accessibility
Terms & Conditions
EU Flag