WordPress 6.8.4

WordPress 6.8.4 has one disclosed vulnerability in the WordSec catalog, all reported in 2026; it is fixed as of August 2026. Their average CVSS score is 7.5, and the most serious one scores 7.5 out of 10. Severity breakdown: 0 critical and 1 high.

The most common weakness is SQL Injection, behind 1 of the records (100%).

The one issue recorded for WordPress 6.8.4 has a vendor fix available, so running the current release closes it.

All of these findings were reported by Tin Pham (TF1T).

Strategic Overview

Avg CVSSHigh
7.5/ 10
Patch Coverage100%
Open

0

Fixed

1

Get automatic notifications for all WordPress 6.8.4 vulnerabilities before they are exploited.

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C