WPVulnerability Database API

WPVulnerability


Democratizing WordPress security information

Welcome to WPVulnerability, the WordPress Vulnerability Database API. This project is a 100% open and free API, for access by any WordPress user, with the sole purpose of improving the security of a site, thanks to this information.

Newsletter


You’ll only receive a newsletter when there is some news related to the WPVulnerability project.

Privacy Data, by:
ROBOTSTXT / ESB10708568
Carrer Wagner 28
08923 Santa Coloma, Barcelona (Spain)


Latest project news

  • 2024-08-16 API update

    ·

    New MariaDB and MySQL Endpoints In line with our efforts to enhance the security of WordPress, in addition to the software itself, PHP, and the web server, we have included vulnerabilities from…

    Read More →

  • 2024-01-29 API update

    ·

    PHP vulnerabilities, out of beta A few months ago, we started the PHP API with PHP vulnerabilities. And now, it’s finally fully available. We’ve been working to create a full database, and…

    Read More →

  • 2023-11-06 API update

    ·

    PHP vulnerabilities (beta) WordPress is not solely made up of the Core, Plugins, and Themes; it also requires additional components to operate effectively. The most crucial of these is PHP, which is…

    Read More →

Some vulnerability’s statistics (2025-10-01)

41,220

at 14,374 plugins

2,968

at 1,445 themes

714

PHP

278

Apache

48

nginx

407

MariaDB

1,473

MySQL

613

ImageMagick

165

curl

20

memcached

58

Redis

58

SQLite


API

The API has available access to three elements: core, plugins and themes.

The API returns all contents in JSON and does not require any API Key. Please consider using it reasonably. If you are a big company or your users are going to use it intensively, please, make a donation.


Javier Casares

WPVulnerability project lead

If you have any suggestions, notices or notifications, please write to me.

You can also check our legal / company information at robotstxt.es.

Sample image