Pricing
WordPress securityInstantly fix and mitigate vulnerabilitiesPlugin auditingPaid auditing for WordPress vendorsManaged VDPStart a security program for your pluginsBug BountyJoin the community and earn bountiesEnterprise APIAt scale monitoring and vPatching for hostsVulnerability databaseThe latest WordPress security intelligence
Login Start trial
Plugin Icon

WPSchoolPress

Ronik@UnlimitedWP

Developer

2.2.28

Latest version

2,000

Installations

Nov 4, 2025

Last updated

WordPress Plugin
No VDP
See changelog
Claim ownership
Report vulnerability
    Vulnerabilities

Vulnerability history

4 present
9 fixed
5 Mitigation rules
  • Authenticated (Administrator+) SQL Injection vulnerability
    <= 2.2.23
    4 days ago
  • Missing Authorization to Arbitrary User Deletion vulnerability
    <= 2.2.16
    Mar 14, 2025
  • Authenticated (Parent+) SQL Injection vulnerability
    <= 2.2.16
    Mar 14, 2025
  • Authenticated (Teacher+) SQL Injection vulnerability
    <= 2.2.16
    Mar 14, 2025
  • Missing Authorization to Privilege Escalation via Account Takeover vulnerability
    <= 2.2.16
    Mar 14, 2025
  • Authenticated (Student/Parent+) SQL Injection vulnerability
    <= 2.2.14
    Jan 7, 2025
  • Insecure Direct Object Reference to Authenticated (Teacher+) Account Takeover/Privilege Escalation vulnerability
    <= 2.2.10
    Oct 25, 2024
  • Teacher+ SQLi vulnerability
    < 2.2.5
    Oct 17, 2023
  • Cross-Site Request Forgery vulnerability
    < 2.2.5
    Sep 19, 2023
  • Broken Access Control vulnerability
    <= 2.2.7
    Jul 11, 2023
  • Multiple Stored Cross-Site Scripting (XSS) vulnerabilities
    <= 2.1.16
    Oct 11, 2021
  • Multiple Authenticated SQL Injections (SQLi) vulnerabilities
    <= 2.1.9
    Oct 11, 2021
  • Reflected Cross-Site Scripting (XSS) vulnerability
    <= 2.1.9
    Oct 11, 2021

Vulnerability mitigation

  • Pricing
  • Application security (SCA)
  • RapidMitigate New
  • Threat Intelligence (API)
  • Documentation
  • VS Monarx
  • VS Imunify360
  • VS Wordfence
  • Log in

Code security

  • Managed VDP New
  • Active VDP directory
  • Security auditing
  • Compliance (CRA) New
  • Log in New

Bug bounty

  • Bug bounty
  • Leaderboard
  • Guidelines
  • Learn New
  • Report
  • Discord
  • Log in New

Use cases

  • Web developers
  • Webhosts New
  • Software vendors
  • WordPress
  • WooCommerce

Resources

  • Vulnerability database
  • Whitepaper 2025 New
  • Articles
  • Case studies New
  • Webinars New
  • Vulnerability statistics

Patchstack

  • About
  • Careers
  • Merch store
  • Media kit
  • LinkedIn
  • Facebook
  • X
© 2025 Patchstack
DPA
Privacy Policy
Accessibility
Terms & Conditions
EU Flag