← All credits
WPScan
3978 vulnerability records and advisories credit this contributor.
CVE-2023-7200
EventON < 4.4.1 - Reflected Cross-Site Scripting
CVE-2023-7199
Relevanssi (Free < 4.22.0, Premium < 2.25.0) - Unauthenticated Private/Draft Post Disclosure
CVE-2023-7198
WPDashboardNotes < 1.0.11 - Unauthorised Deletion of Private Notes
CVE-2023-7197
Marketing Twitter Bot <= 1.11 - Settings Update to Stored XSS via CSRF
CVE-2023-7196
Ultimate Noindex Nofollow Tool <= 1.1.2 - Settings Update via CSRF
CVE-2023-7195
WP-Reply Notify <= 1.1 - Settings Update via CSRF
CVE-2023-7194
Meris <= 1.1.2 - Reflected XSS
CVE-2023-7174
aBitGone CommentSafe <= 1.0.0 - Settings Update to Stored XSS via CSRF
CVE-2023-7170
EventON-RSVP < 2.9.5 - Reflected XSS
CVE-2023-7168
Better Follow Button for Jetpack <= 8.0 - Admin+ Stored XSS