Patchstack’s Weekly WordPress Vulnerability Overview – June 19 to 25, 2024
Weekly vulnerability overview
Published 26 June 2024
Welcome to Patchstack’s WordPress vulnerability overview for the week of June 19 – 25, 2024.
As the #1 vulnerability processor in the world, Patchstack brings you this report so you can stay safe even if you don’t use the Patchstack app (yet).
The first part of the report outlines the most popular plugins you likely have installed on your sites. Then, explore the rest of our list for other plugins you may have installed, and which have vulnerabilities.
Update them to the most recent versions or, in case the update is not official yet, get real-time Patchstack protection to reduce the risk of getting attacked before the plugin developers are able to issue an update.
WordPress vulnerability landscape (June 19 – 25, 2024)
- New WordPress vulnerabilities added to Patchstack’s database: 174
- Vulnerabilities discovered by Patchstack: 96
- Currently undisclosed vulnerabilities due to 48hr early warning available to Patchstack users: 84
How severe were this week’s vulnerabilities?
WordPress vulnerabilities are categorized according to Patchstack’s Patch Priority Score (i.e., likelihood of resulting in significant exploits), ranging from low-severity vulnerabilities to high-severity, which should be updated as soon as possible.
Patchstack offers the vPatching functionality to keep you safe before you can apply the plugin/theme update.
Low-severity vulnerabilities this week | Medium-severity vulnerabilities | High-severity vulnerabilities |
127 | 23 | 24 |
What are the most dangerous vulnerabilities?
If you have the following plugins installed, check for the update immediately or get real-time protection with Patchstack. The highest-severity vulnerabilities are the ones most likely to be used by attackers in exploits:
- WordPress Lifeline Donation plugin
Source: patchstack.com