← All credits
WPScan
3921 vulnerability records and advisories credit this contributor.
CVE-2026-78152
SureRank 1.6.2 - 1.10.0 - Unauthenticated Author Email Disclosure via Person Schema
CVE-2026-77773
Social Contact Form (FormyChat) < 2.15.8 - Unauthenticated Gravity Forms Entry Disclosure via formychat_get_gf_entry
CVE-2026-77753
Temporary Login Without Password < 1.9.9 - Authenticated Temporary Access Revocation Bypass via Application Passwords
CVE-2026-77752
Temporary Login Without Password 1.5 - 1.9.8 - Multisite Subsite Admin+ Network Super Admin Privilege Escalation
CVE-2026-77705
Amelia < 2.4.10 - Amelia Manager+ WordPress Account Takeover
CVE-2026-77689
Amelia Pro 9.0 - 9.8 - Unauthenticated Payment Bypass
CVE-2026-77005
Code Monkeys Proposals <= 1.0.1 - Subscriber+ Arbitrary File Deletion via Path Traversal
CVE-2026-75800
Frontegg SAML SSO <= 1.0.1 - Unauthenticated Account Takeover via Unverified SAMLResponse
CVE-2026-74933
GenieWords 1.5.27 - 1.5.34 - Unauthenticated Stored XSS and Configuration Overwrite
CVE-2026-86815
BackWPup 5.2.2 - 5.7.4 - BackWPup Jobs Checker+ Database Backup Exfiltration via Missing Authorization on Job REST Routes