← All credits
Phat RiO | Patchstack Bug Bounty Program
324 vulnerability records and advisories credit this contributor.
CVE-2026-24610
WordPress MetForm Pro plugin <= 3.9.1 - Broken Access Control vulnerability
CVE-2026-39442
WordPress PressMart theme <= 1.2.26 - PHP Object Injection vulnerability
CVE-2026-27400
WordPress BookPro plugin <= 1.1.0 - Arbitrary File Deletion vulnerability
CVE-2026-39446
WordPress Kapee theme < 1.7.0 - PHP Object Injection vulnerability
CVE-2026-39443
WordPress EmallShop theme <= 2.4.21 - PHP Object Injection vulnerability
CVE-2026-39438
WordPress ListingPro plugin <= 2.9.10 - SQL Injection vulnerability
CVE-2026-27395
WordPress Support Board plugin < 3.8.9 - Privilege Escalation vulnerability
CVE-2026-27041
WordPress Unlimited Elements for Elementor (Premium) plugin <= 2.0.6 - Arbitrary File Upload vulnerability
CVE-2026-25439
WordPress Booknetic plugin <= 4.8.5 - Account Takeover vulnerability
CVE-2026-32536
WordPress Green Downloads plugin <= 2.08 - Arbitrary File Upload vulnerability