WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in WP Crontrol

Take control of the cron events on your WordPress website or WooCommerce store with WP Crontrol.

3Reported vulnerabilities
8.1Highest CVSS score
1.21.1Latest version
300,000+Active installs

What to do now

Update WP Crontrol to 1.19.2 or later. 3 of these have a fixed version available. Updating resolves them.

Plugin last updated: July 31, 2026 / Tested up to WordPress: 7.0.4 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2024-28850 High 8.1 0.2% Before 1.16.2 1.16.2 March 25, 2024
WF-2a82666d-4c35-4aba-9163-834eef6c50ad Medium 6.1 Before 1.3 1.3 August 21, 2015
CVE-2025-8678 Medium 5.9 0.3% 1.17.0 to 1.19.1 (inclusive) 1.19.2 August 22, 2025

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.