Known vulnerabilities in Query Monitor
Query Monitor is the developer tools panel for WordPress and WooCommerce.
1Reported vulnerabilities
7.2Highest CVSS score
4.0.7Latest version
200,000+Active installs
What to do now
Update Query Monitor to 3.20.4 or later.
1 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2026-4267 | High | 0.3% | 0 to 3.20.3 (inclusive) | 3.20.4 |
March 31, 2026 |