← All credits
WPScan
3974 vulnerability records and advisories credit this contributor.
CVE-2023-5931
rtMedia for WordPress, BuddyPress and bbPress < 4.6.16 - Subscriber+ RCE
CVE-2023-5922
Royal Elementor Addons and Templates < 1.3.81 - Unauthenticated Arbitrary Post Read
CVE-2023-5911
WP Custom Cursors <= 3.2 - Admin+ Stored XSS
CVE-2023-5907
File Manager < 6.3 - Admin+ Arbitrary OS File/Folder Access + Path Traversal
CVE-2023-5906
Job Manager & Career < 1.4.4 - Directory listing to Sensitive Data Exposure
CVE-2023-5905
DeMomentSomTres WordPress Export Posts With Images <= 20220825 - Subscriber+ unauthorized data export
CVE-2023-5886
WP All Export (Free < 1.4.1, Pro < 1.8.6) - Author+ PHAR Deserialization via CSRF
CVE-2023-5884
Word Balloon < 4.20.3 - Avatar Removal via CSRF
CVE-2023-5882
WP All Export (Free < 1.4.1, Pro < 1.8.6) - Remote Code Execution via CSRF
CVE-2023-5877
affiliate-toolkit < 3.4.3 - Unauthenticated SSRF