← All credits
Supakiad S. (m3ez) | Patchstack Bug Bounty Program
15 vulnerability records and advisories credit this contributor.
CVE-2026-97269
WordPress WPFunnels plugin <= 3.13.1 - Insecure Direct Object References (IDOR) vulnerability
CVE-2026-97251
WordPress Bus Ticket Booking with Seat Reservation plugin <= 5.9.3 - Insecure Direct Object References (IDOR) vulnerability
CVE-2026-97248
WordPress Booking Activities plugin <= 1.18.7.1 - PHP Object Injection vulnerability
CVE-2026-97245
WordPress SureCart plugin <= 4.7.2 - Privilege Escalation vulnerability
CVE-2026-62135
WordPress Booktics plugin <= 1.0.24 - Broken Access Control vulnerability
CVE-2026-85309
WordPress Ultimate Maps by Supsystic plugin <= 1.5.3 - Broken Access Control vulnerability
CVE-2026-84768
WordPress VikAppointments Services Booking Calendar plugin <= 1.2.20 - SQL Injection vulnerability
CVE-2026-81756
WordPress Smart Marketing SMS and Newsletters Forms plugin <= 5.1.24 - SQL Injection vulnerability
CVE-2026-78286
WordPress Geo Controller plugin <= 8.9.8 - PHP Object Injection vulnerability
CVE-2026-78292
WordPress Hash Form plugin <= 1.4.1 - PHP Object Injection vulnerability