Live vulnerability tracking

WordPress security
alerts that matter

Get notified the moment a vulnerability is found in WordPress core, your plugins, or your theme. Free newsletter + personalised alerts for your sites.

Double opt-in · GDPR compliant · Unsubscribe anytime

Security overview Last 7 days
625
Critical
2199
High
4596
Medium
0
Subscribers
9097 total vulnerabilities tracked

Everything you need to stay secure

One platform for all WordPress security intelligence.

🔍
Site Scanner

Scan any WordPress site to detect installed plugins, themes and core version — then instantly check for known vulnerabilities.

📬
Daily Newsletter

Receive a curated daily digest of new WordPress vulnerabilities. Critical issues get their own immediate alert.

🎯
Personalized Alerts

Monitor your specific sites. Get an email only when a vulnerability affects plugins or themes you actually use.

🚫
Closed Plugin Tracker

Track plugins removed from the WordPress.org repository — often a sign of a serious security issue.

🔗
WP Plugin Integration

Install our free WordPress plugin on your site for automatic detection of all installed components — no manual URL entry.

🛡️
GDPR Compliant

Double opt-in, transparent data use, easy one-click unsubscribe. Your data stays in the EU. No tracking.

Latest vulnerabilities

Most recent WordPress security issues from all sources.

Scan your site →
Really Simple Security – Simple and Performant Security (formerly Really Simple SSL) [really-simple-ssl] < 9.8.3
UNKNOWN Plugin really-simple-ssl CVE-2026-88798 Fixed in 9.8.3 Sep 18, 2026
EWWW Image Optimizer [ewww-image-optimizer] < 8.7.7
UNKNOWN Plugin ewww-image-optimizer CVE-2026-91011 Fixed in 8.7.7 Sep 17, 2026
CVE-2026-89307 — The "Firma Circolare" feature in the "Design Scuole Italia" WordPress theme allows an authenticated
UNKNOWN Theme CVE-2026-89307 Sep 15, 2026
CVE-2026-87792 — The "Design Scuole Italia" WordPress theme is affected by multiple Authorization Bypass vulnerabilit
UNKNOWN Theme CVE-2026-87792 Sep 15, 2026
CVE-2026-87793 — The "Design Scuole Italia" WordPress theme is affected by a Reflected XSS vulnerability in the filt
UNKNOWN Theme CVE-2026-87793 Sep 15, 2026
3.7
To Do List Member 1.4 - 1.6 - Unauthenticated Content Injection via Import
LOW Plugin to-do-list-member CVE-2026-86802 Sep 21, 2026
3.7
CVE-2026-86802 — The To Do List Member WordPress plugin through 1.6 does not have authorisation or nonce checks in an
LOW Plugin CVE-2026-86802 Sep 21, 2026
3.7
EUVD-2026-83869 (CVE-2026-86802) — The To Do List Member WordPress plugin through 1.6 does not have authorisation …
LOW Plugin CVE-2026-86802 Sep 21, 2026
2.7
Meow Gallery < 5.5.5 - Author+ Draft and Private Post Disclosure via fetch_posts
LOW Plugin meow-gallery CVE-2026-92423 Fixed in 5.5.5 Sep 20, 2026
3.7
TikTok 1.2.0 - 1.4.1 - Unauthenticated OAuth Code Redemption
LOW Plugin tiktok CVE-2026-92965 Fixed in 1.4.2 Sep 20, 2026

Ready to secure your WordPress sites?

Create a free account to monitor your sites and get personalized vulnerability alerts.

Create free account Try the scanner