← All credits
WPScan
3978 vulnerability records and advisories credit this contributor.
CVE-2026-14842
Events Made Easy < 3.1.2 - Unauthenticated Payment Bypass
CVE-2026-14831
Easy Booking < 3.5.0 - Unauthenticated Minimum Booking Duration Bypass
CVE-2026-14829
Checkimate <= 1.0.13 - Unauthenticated License Deactivation via Hardcoded Secret
CVE-2026-14824
Quiz And Survey Master < 11.2.2 - Contributor+ Stored XSS via Polar Question
CVE-2026-14816
The GDPR Framework < 2.4.0 - Unauthenticated Consent Record Forgery and Do Not Sell Requests Spam
CVE-2026-14812
Premium SEO - Unauthenticated Backdoor (Admin Creation / RCE / SSRF / Content Injection)
CVE-2026-14553
Zportals < 6.3.4 - Subscriber+ Arbitrary File Upload
CVE-2026-14547
Estatik Real Estate Plugin < 4.3.3 - Unauthenticated Arbitrary-Recipient Mail Relay via Request Form
CVE-2026-14331
Subscribe2 < 10.46 - Reflected XSS via email Parameter
CVE-2026-14314
PeproDev WooCommerce Receipt Uploader <= 2.8.0 - Unauthenticated Image Attachment Disclosure via IDOR