← All credits
Rafie Muhammad | Patchstack Bug Bounty Program
214 vulnerability records and advisories credit this contributor.
CVE-2025-64192
WordPress XStore theme < 9.6 - Broken Access Control vulnerability
CVE-2025-67919
WordPress Woffice Core plugin <= 5.4.30 - Insecure Direct Object References (IDOR) vulnerability
CVE-2025-67918
WordPress Woffice theme <= 5.4.30 - Cross Site Scripting (XSS) vulnerability
CVE-2025-67917
WordPress Traveler theme <= 3.2.6 - Broken Access Control vulnerability
CVE-2025-62017
WordPress Kallyas theme <= 4.22.0 - Broken Access Control vulnerability
CVE-2025-53234
WordPress UDesign Core plugin <= 4.14.0 - Cross Site Scripting (XSS) vulnerability
CVE-2025-46434
WordPress The Plus Addons for Elementor Pro plugin < 6.3.7 - Broken Access Control vulnerability
CVE-2026-97253
WordPress LayerSlider plugin <= 8.4.0 - Cross Site Scripting (XSS) vulnerability
CVE-2025-64378
WordPress ListingPro theme < 2.9.10 - Broken Access Control vulnerability
CVE-2025-64209
WordPress Masterstudy theme < 4.8.122 - Broken Access Control vulnerability