← All credits
Nguyen Tan Phat
33 vulnerability records and advisories credit this contributor.
CVE-2025-15470
Eleganzo <= 1.2 - Authenticated (Subscriber+) Arbitrary Directory Deletion
CVE-2026-1729
AdForest <= 6.0.12 - Authentication Bypass
CVE-2026-0953
Tutor LMS Pro <= 3.9.5 - Authentication Bypass via Social Login
CVE-2025-8898
Taxi Booking Manager for Woocommerce | E-cab <= 1.3.0 - Missing Authorization to Unauthenticated Privilege Escalation via Account Takeover
CVE-2025-8895
WP Webhooks <= 3.3.5 - Unauthenticated Arbitrary File Copy
CVE-2025-8289
Redirection for Contact Form 7 <= 3.2.4 - Unauthenticated PHP Object Injection via PHAR Deserialization
CVE-2025-8145
Redirection for Contact Form 7 <= 3.2.4 - Unauthenticated PHP Object Injection
CVE-2025-8141
Redirection for Contact Form 7 <= 3.2.4 - Unauthenticated Arbitrary File Deletion
CVE-2025-7697
Integration for Google Sheets and Contact Form 7, WPForms, Elementor, Ninja Forms <= 1.1.1 - Unauthenticated PHP Object Injection via verify_field_val Function
CVE-2025-7696
Integration for Pipedrive and Contact Form 7, WPForms, Elementor, Ninja Forms <= 1.2.3 - Unauthenticated PHP Object Injection via verify_field_val Function