← All credits
WPScan
3921 vulnerability records and advisories credit this contributor.
CVE-2022-4323
Google Analyticator < 6.5.6 - Admin+ PHP Object Injection
CVE-2022-4321
PDF Generator for WordPress < 1.1.2 - Reflected XSS
CVE-2022-4320
WordPress Events Calendar Plugin < 1.4.5 - Multiple Reflected XSS
CVE-2022-4310
Slimstat Analytics < 4.9.3 - Unauthenticated Stored XSS
CVE-2022-4309
Subscribe2 < 10.38 - User Deletion via CSRF
CVE-2022-4307
Pardakht Delkhah < 2.9.3 - Unauthenticated Stored XSS
CVE-2022-4306
Panda Pods Repeater Field < 1.5.4 - Reflected XSS
CVE-2022-4305
Login as User or Customer < 3.3 - Unauthenticated Privilege Escalation to Admin
CVE-2022-4303
WP Limit Login Attempts <= 2.6.4 - IP Spoofing
CVE-2022-4302
White Label CMS < 2.5 - Admin+ PHP Object Injection