Pricing
Solutions
WordPress security
Instantly fix and mitigate vulnerabilities
Plugin auditing
Paid auditing for WordPress vendors
Managed VDP
Start a security program for your plugins
Bug Bounty
Join the community and earn bounties
Enterprise API
At scale monitoring and vPatching for hosts
Vulnerability database
The latest WordPress security intelligence
Login
Start trial
All In One WP Security & Firewall
David Anderson / Team Updraft
Developer
5.4.4
Latest version
1,000,000
Installations
6 days ago
Last updated
WordPress Plugin
No VDP
See changelog
Claim ownership
Report vulnerability
Vulnerabilities
Vulnerability history
0 present
17 fixed
3 Mitigation rules
Cross Site Request Forgery (CSRF) vulnerability
<= 5.2.6
Mar 28, 2024
Reflected Cross-Site Scripting (XSS) vulnerability
<= 5.2.5
Feb 6, 2024
Secret Login Page Location Disclosure on Multisites vulnerability
<= 5.2.4
Dec 28, 2023
Sensitive Data Exposure of Plaintext Credentials vulnerability
5.1.9
Jul 12, 2023
Admin+ Stored XSS vulnerability
< 5.1.5
Apr 11, 2023
Authenticated(Admin+) Directory Traversal vulnerability
<= 5.1.4
Feb 15, 2023
Configuration Leak vulnerability
< 5.1.3
Dec 27, 2022
Multiple Cross-Site Request Forgery (CSRF) vulnerabilities
<= 5.1.0
Nov 22, 2022
Authenticated Arbitrary Redirect / Reflected XSS vulnerability
<= 4.4.10
Apr 11, 2022
Authenticated Cross-Site Scripting (XSS) vulnerability
<= 4.4.5
Feb 11, 2021
Reflected Cross-Site Scripting (XSS) vulnerability
<= 4.4.3
Sep 9, 2020
Cross Site Scripting
<= 4.2.1
Dec 14, 2016
Multiple Vulnerabilities
<= 4.1.2
Jul 31, 2016
XSS
<= 3.9.7
Aug 13, 2015
SQL Injection
<= 3.9.0
Apr 8, 2015
CSRF
<= 3.8.9
Jan 8, 2015
SQL Injection
<= 3.8.7
Jan 8, 2015