WordPress is open source software you can use to create a beautiful website, blog, or app.
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2025-10043 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. johnpbloch/wordpress-core is vulnerable to Improperly Controlled Modification of Dynamically-Determined Object Attributes in versions 1.0.0 - 3.7.37, 3.8.0 - 3.8.37, 3.9.0 - 3.9.35, 4.0.0 - 4.0.34, 4.1.0 - 4.1.34, 4.2.0 - 4.2.31, 4.3.0 - 4.3.27, 4.4.0 - 4.4.26, 4.5.0 - 4.5.25, 4.6.0 - 4.6.22, 4.7.0 - 4.7.22, 4.8.0 - 4.8.18, 4.9.0 - 4.9.19, 5.0.0 - 5.0.15, 5.1.0 - 5.1.12, 5.2.0 - 5.2.14, 5.3.0 - 5.3.11, 5.4.0 - 5.4.9, 5.5.0 - 5.5.8, 5.6.0 - 5.6.7, 5.7.0 - 5.7.5, 5.8.0 - 5.8.3 and 5.9.0 - 5.9.1. | 1.0.0 - 3.7.373.8.0 - 3.8.373.9.0 - 3.9.35 +20 more | Medium |
AIKIDO-2025-10045 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. johnpbloch/wordpress-core is vulnerable to Cross-site Scripting (XSS) in versions 4.1.0 - 4.1.37, 4.2.0 - 4.2.34, 4.3.0 - 4.3.30, 4.4.0 - 4.4.29, 4.5.0 - 4.5.28, 4.6.0 - 4.6.25, 4.7.0 - 4.7.25, 4.8.0 - 4.8.21, 4.9.0 - 4.9.22, 5.0.0 - 5.0.18, 5.1.0 - 5.1.15, 5.2.0 - 5.2.17, 5.3.0 - 5.3.14, 5.4.0 - 5.4.12, 5.5.0 - 5.5.11, 5.6.0 - 5.6.8, 5.7.0 - 5.7.6, 5.8.0 - 5.8.5, 5.9.0 - 5.9.4, 6.0.0 - 6.0.3, 6.1.0 - 6.1.1 and 6.2.0 - 6.2.0. | 4.1.0 - 4.1.374.2.0 - 4.2.344.3.0 - 4.3.30 +19 more | Medium |
AIKIDO-2025-10044 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. johnpbloch/wordpress-core is vulnerable to Cross-site Scripting (XSS) in versions 6.3.0 - 6.3.1. | 6.3.0 - 6.3.1 | Medium |
AIKIDO-2025-10047 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. johnpbloch/wordpress-core is vulnerable to Denial of Service (DoS) in versions 4.7.0 - 4.7.26, 4.8.0 - 4.8.22, 4.9.0 - 4.9.23, 5.0.0 - 5.0.19, 5.1.0 - 5.1.16, 5.2.0 - 5.2.18, 5.3.0 - 5.3.15, 5.4.0 - 5.4.13, 5.5.0 - 5.5.12, 5.6.0 - 5.6.11, 5.7.0 - 5.7.9, 5.8.0 - 5.8.7, 5.9.0 - 5.9.7, 6.0.0 - 6.0.5, 6.1.0 - 6.1.3, 6.2.0 - 6.2.2 and 6.3.0 - 6.3.1. | 4.7.0 - 4.7.264.8.0 - 4.8.224.9.0 - 4.9.23 +14 more | Medium |
AIKIDO-2025-10046 Pre-CVE Found by Aikido Intel before public disclosure or CVE publication. johnpbloch/wordpress-core is vulnerable to Cross-site Scripting (XSS) in versions 5.6.0 - 5.6.11, 5.7.0 - 5.7.9, 5.8.0 - 5.8.7, 5.9.0 - 5.9.7, 6.0.0 - 6.0.5, 6.1.0 - 6.1.3, 6.2.0 - 6.2.2 and 6.3.0 - 6.3.1. | 5.6.0 - 5.6.115.7.0 - 5.7.95.8.0 - 5.8.7 +5 more | Medium |
No direct dependencies.
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant