← All credits
WPScan
3924 vulnerability records and advisories credit this contributor.
CVE-2026-84898
Eventin < 4.1.21 - Contributor+ LFI via Event Layout Meta
CVE-2026-84896
King Addons for Elementor < 51.1.77 - Contributor+ Stored XSS via Magazine Grid Widget
CVE-2026-84745
The Events Calendar < 6.17.3.1 - Contributor+ Non-Public Event, Venue and Organizer Content Disclosure via REST API
CVE-2026-84225
Kirki 6.0.0 - 6.2.5 - Authenticated Collaboration Comment Status Modification via IDOR
CVE-2026-84221
Kirki 6.0.0 - 6.2.5 - Editor+ SQLi via Content Manager Field ID
CVE-2026-84219
Kirki 6.2.1 - 6.2.5 - Unauthenticated Stored XSS via HTML Entity Decoding
CVE-2026-84043
ePayco Payment Gateway for WooCommerce < 8.4.7 - Unauthenticated Payment Confirmation Bypass
CVE-2026-84028
Bold Page Builder < 5.9.9 - Contributor+ Stored XSS via Slider Elements' additional_settings
CVE-2026-84022
Bold Page Builder < 5.9.8 - Contributor+ Stored XSS via Multiple Shortcode Element Attributes
CVE-2026-84021
Bold Page Builder < 5.9.8 - Contributor+ Stored XSS via bt_bb_button/bt_bb_headline/bt_bb_icon URL