Hello WP community.
I have my own WP agency.
TDLR – we have an internally built app we use as our ‘hub’ for all business operations. The app has a table of plugins we’re actively using across all our WP websites.
We’d like to implement a feature that can check if there are any known vulnerabilities across our plugin stacks, on a daily basis, automatically (cron job executed from our app).
I’m waiting to hear back from WP Scan and frankly expecting a stupidly priced quote.
Are there any decent databases out there that have a good API that includes:
* CVSS risk scores
* Easy to search for WP plugins (either by slug or identifier)
* Ideally a free API but happy to pay if the service is decent and reliable