Pricing
Case studies
Login
Start trial
Recently exploited vulnerabilities
Get more with our API
Affected software | Vulnerability
Priority
Disclosed
Burst Statistics
3.4.0-3.4.1.1
Privacy-Friendly WordPress Analytics (Google Analytics Alternative) plugin 3.4.0-3.4.1.1 - 3.4.1.1 - Authentication Bypass to Admin Account Takeover vulnerability
9.8
4 days ago
User Registration Advanced Fields
<= 1.6.20
Unauthenticated Arbitrary File Upload vulnerability
10
05/05/2026
JoomSport
<= 5.7.7
SQL Injection vulnerability
9.3
29/04/2026
Drag and Drop Multiple File Upload – Contact Form 7
<= 1.3.9.6
Unauthenticated Arbitrary File Upload via Non-ASCII Filename Blacklist Bypass vulnerability
8.1
20/04/2026
WP Statistics
<= 14.16.4
Unauthenticated Stored Cross-Site Scripting via 'utm_source' Parameter vulnerability
7.1
17/04/2026
WordPress vulnerability statistics
All time
General WordPress security vulnerability statistics powered by the Patchstack Vulnerability Database.
Vulnerabilities disclosed via Patchstack
18,657
By Patchstack Alliance
20,231
By other sources
Most common security vulnerabilities
How to patch common vulnerabilities
#1
Cross-Site Scripting (XSS)
41.77%
#2
Other vulnerabilities
17.64%
#3
Cross-Site Request Forgery (CSRF)
13.70%
#4
Broken Access Control
12.80%
#5
SQL Injection
6.20%
#6
Sensitive Data Exposure
5.23%
#7
Arbitrary File Upload
2.67%
Disclosed by
Patchstack
Other sources
Patch status of published vulnerabilities
Not patched
#11,135
29%
Patched
#27,753
71%
Breakdown by software type
Plugin
#35,588
92%
Theme
#2,986
8%
Core
#314
1%
Breakdown by patch priority
High (Resolve immediately)
#6,220
16%
Medium (Resolve in 14 days)
#7,702
20%
Low (Resolve in 30 days)
#24,966
64%
Breakdown by CVSS severity
Critical (9.0-10.0)
#2,477
7%
High (7.0-8.9)
#11,419
31%
Medium (4.0-6.9)
#22,320
61%
Low (0.1-3.9)
#209
1%
Top security researchers by contributions
See leaderboard
# Researcher
Reports
Country
Plugins with a VDP earn +15%
XP and
Zeroday payouts up to $33,000!
Plugins with a VDP earn +15% XP and Zeroday payouts up to $33,000!
Read more
1
Rafie Muhammad
Rafie Muhammad
2,782
🇮🇩
2
João Pedro S Alcânta...
João Pedro S Alcântara (Kinorth)
2,545
🇧🇷
3
Tran Nguyen Bao Khan...
Tran Nguyen Bao Khanh (VCI - VNPT Cyber Immu...
1,969
🇻🇳
4
SOPROBRO
SOPROBRO
1,521
🇬🇧
5
Nabil Irawan
Nabil Irawan
1,471
🇮🇩
6
Mika
Mika
1,470
🇫🇷
7
Nguyen Xuan Chien
Nguyen Xuan Chien
1,227
🇻🇳
8
Bonds
Bonds
1,204
🇮🇩
9
Abdi Pranata
Abdi Pranata
986
🇮🇩