Skip to main content

Threat intelligence

Vulnerability catalog data and freshness

The public vulnerability catalog is an automatically imported snapshot of advisories used internally for SiteRespond Defence. It is refreshed on a schedule — not manually curated entry by entry.

Data sources

WordPress plugin, theme and core advisories are imported from Wordfence Intelligence into SiteRespond's private catalog. Each record stores source provenance and links to the authoritative Wordfence advisory. CVE identifiers are cross-referenced with the U.S. CISA Known Exploited Vulnerabilities (KEV) catalog.

  • Wordfence Intelligence — primary WordPress advisory feed
  • CISA KEV — known exploited CVE cross-reference
  • NVD — linked for CVE detail where assigned

Refresh schedule

The Wordfence feed and CISA KEV catalog are promoted on a daily schedule via automated jobs. The “Catalog refreshed” timestamp on the public intelligence page reflects the last successful Wordfence feed promotion. CISA KEV has its own refresh timestamp in admin operations.

Software references vs distinct advisories

The catalog may list more software references than distinct advisories because one advisory can affect multiple components (for example, the same issue referenced against several slugs or version ranges). Defence matching evaluates your site's installed inventory against these references.

Classification and limits

Vulnerability types shown in charts are inferred from advisory titles using pattern rules — they are useful context, not a formal CWE taxonomy. Some advisories cannot be classified automatically and appear as unclassified in summary statistics.

Redistribution and public listing

SiteRespond uses this data internally for connected Defence monitoring. Public pages summarise imported fields with attribution and links to original sources. Attribution alone does not necessarily grant redistribution rights; SiteRespond's public listing is intended as awareness with pointers to authoritative advisories. Review Wordfence Intelligence and CISA terms for their respective catalogs.

What this does not mean for your site

Listing a vulnerability in the catalog does not mean your website is affected. Exposure depends on whether you run the affected software at a vulnerable version. SiteRespond Watch performs external monitoring only and does not inspect installed WordPress components. SiteRespond Defence matches your installed core, plugin and theme versions against this catalog when the Defence plugin is connected.