← All credits
Rafie Muhammad (Patchstack)
502 vulnerability records and advisories credit this contributor.
CVE-2024-27956
WordPress Automatic plugin <= 3.92.0 - Unauthenticated Arbitrary SQL Execution vulnerability
CVE-2024-27955
WordPress Automatic plugin <= 3.92.0 - CSRF to Privilege Escalation vulnerability
CVE-2024-27954
WordPress Automatic plugin <= 3.92.0 - Unauthenticated Arbitrary File Download and SSRF vulnerability
CVE-2024-24927
WordPress Brooklyn Theme <= 4.9.7.6 is vulnerable to Cross Site Scripting (XSS)
CVE-2024-24926
WordPress Brooklyn Theme <= 4.9.7.6 is vulnerable to PHP Object Injection
CVE-2024-24800
WordPress Product Feed PRO for WooCommerce plugin <= 13.2.5 - Reflected Cross Site Scripting (XSS) vulnerability
CVE-2024-24799
WordPress WooCommerce Box Office plugin <= 1.2.2 - Broken Access Control vulnerability
CVE-2024-24700
WordPress WP Editor plugin <= 1.2.8 - Reflected Cross Site Scripting (XSS) vulnerability
CVE-2024-22311
WordPress Simply Schedule Appointments plugin <= 1.6.6.20 - Reflected Cross Site Scripting (XSS) vulnerability
CVE-2024-22300
WordPress Icegram Express plugin <= 5.7.11 - Reflected Cross Site Scripting (XSS) vulnerability