← All credits
WPScan
4010 vulnerability records and advisories credit this contributor.
CVE-2024-11373
Connexion Logs <= 3.0.2 - Log Deletion via CSRF
CVE-2024-11372
Connexion Logs <= 3.0.2 - Admin+ SQL Injection
CVE-2024-11357
Goodlayers Core < 2.0.10 - Contributor+ Stored XSS
CVE-2024-11356
Tourmaster < 5.3.4 - Unauthenticated Stored XSS via Room Booking
CVE-2024-11273
Contact Form & SMTP Plugin for WordPress by PirateForms < 2.6.0 - Admin+ Stored XSS
CVE-2024-11272
Contact Form & SMTP Plugin for WordPress by PirateForms < 2.6.0 - Admin+ Stored XSS
CVE-2024-11269
AHAthat Plugin <= 1.6 - Admin+ SQL Injection
CVE-2024-11267
JSP Store Locator <= 1.0 - Contributor+ SQL Injection
CVE-2024-11266
Geocache Stat Bar Widget <= 0.911 - Admin+ Stored XSS
CVE-2024-11223
WPForms < 1.9.2.3 - Admin+ Stored XSS