← All credits
WPScan
3924 vulnerability records and advisories credit this contributor.
CVE-2026-77704
Amelia 1.2.32 - 2.4.8 - Amelia Customer+ Appointment Status Update and Self-Approval
CVE-2026-77013
Icollect <= 1.0.0 - Unauthenticated User and Term Creation via Unrestricted Method Dispatch
CVE-2026-77012
Icollect <= 1.0.0 - Unauthenticated Arbitrary File Read, SSRF and Path Traversal File Write via Default Publishing Password
CVE-2026-77010
HEL Online Classroom: AI-powered Online Classrooms <= 1.0.3 - Unauthenticated Moderator Join URL Disclosure and Class Access Code Bypass
CVE-2026-77008
HEL Online Classroom: AI-powered Online Classrooms <= 1.0.3 - Unauthenticated Plugin Settings Update
CVE-2026-77007
HEL Online Classroom: AI-powered Online Classrooms <= 1.0.3 - Unauthenticated BigBlueButton API Secret Disclosure
CVE-2026-76586
BookingPress 1.5.6 - 1.6.2 - Unauthenticated Booking Price Manipulation via PayPal Payment Confirmation
CVE-2026-76585
Customer Reviews for WooCommerce < 5.118.0 - Unauthenticated Stored XSS via 'comment' Parameter
CVE-2026-76548
Profile Builder < 4.0.1 - Unauthenticated Unpublished Content and Media Modification via Front-End Upload Auth Bypass
CVE-2026-76547
Profile Builder < 4.0.1 - Admin+ PHP Object Injection via Import/Export