vgo0

23
All Time Ranking
188
All Time Discoveries
157
90 Day Published Submissions
23 Dec '24
Last Published Submission
Submitted 100 Vulnerabilities
Submitted 100 Vulnerabilities
November 14, 2024
Submitted 75 Vulnerabilities
Submitted 75 Vulnerabilities
October 17, 2024
Submitted 50 Vulnerabilities
Submitted 50 Vulnerabilities
October 3, 2024
Submitted 25 Vulnerabilities
Submitted 25 Vulnerabilities
September 23, 2024
Submitted 10 Vulnerabilities
Submitted 10 Vulnerabilities
September 12, 2024
Submitted XSS Vulnerability
Submitted XSS Vulnerability
September 4, 2024
Submitted 5 Vulnerabilities
Submitted 5 Vulnerabilities
August 15, 2024
Submitted 1 Vulnerability
Submitted 1 Vulnerability
July 3, 2024

Showing 141-160 of 188 Vulnerabilities

Title CVE ID CVSS Vector Date
Checkout Field Editor (Checkout Manager) for WooCommerce <= 2.0.3 - Reflected Cross-Site Scripting via render_review_request_notice CVE-2024-8499 4.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:L/A:N October 3, 2024
RabbitLoader – Website Speed Optimization for improving Core Web Vital metrics with Cache, Image Optimization, and more <= 2.21.0 - Reflected Cross-Site Scripting CVE-2024-8800 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N October 1, 2024
MC4WP: Mailchimp Top Bar <= 1.6.0 - Reflected Cross-Site Scripting CVE-2024-9210 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N October 1, 2024
SEOPress – On-site SEO <= 8.1.1 - Reflected Cross-Site Scripting CVE-2024-9225 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N October 1, 2024
BerqWP – Automated All-In-One PageSpeed Optimization Plugin for Core Web Vitals, Cache, CDN, Images, CSS, and JavaScript <= 2.1.1 - Reflected Cross-Site Scripting CVE-2024-9344 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N October 1, 2024
Store Exporter for WooCommerce – Export Products, Export Orders, Export Subscriptions, and More <= 2.7.2.1 - Reflected Cross-Site Scripting CVE-2024-8793 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N September 30, 2024
PDF Image Generator <= 1.5.6 - Reflected Cross-Site Scripting CVE-2024-9241 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N September 30, 2024
Loggedin – Limit Active Logins <= 1.3.1 - Reflected Cross-Site Scripting CVE-2024-9228 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N September 30, 2024
Custom Banners <= 3.3 - Reflected Cross-Site Scripting CVE-2024-8799 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N September 30, 2024
WP Search Analytics <= 1.4.10 - Reflected Cross-Site Scripting CVE-2024-9209 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N September 30, 2024
Easy Load More <= 1.0.3 - Reflected Cross-Site Scripting CVE-2024-8728 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N September 30, 2024
Broken Link Checker <= 2.4.0 - Reflected Cross-Site Scripting CVE-2024-8981 7.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L September 30, 2024
DK PDF <= 1.9.6 - Reflected Cross-Site Scripting CVE-2024-8727 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N September 30, 2024
Auto Featured Image from Title <= 2.3 - Reflected Cross-Site Scripting CVE-2024-8786 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N September 30, 2024
EU/UK VAT Manager for WooCommerce <= 2.12.12 - Reflected Cross-Site Scripting CVE-2024-8788 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N September 27, 2024
Simple LDAP Login <= 1.6.0 - Reflected Cross-Site Scripting CVE-2024-8715 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N September 27, 2024
GTM Server Side <= 2.1.19 - Reflected Cross-Site Scripting CVE-2024-8712 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N September 27, 2024
Bulk NoIndex & NoFollow Toolkit <= 2.15 - Reflected Cross-Site Scripting CVE-2024-8803 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N September 25, 2024
Store Hours for WooCommerce <= 4.3.20 - Reflected Cross-Site Scripting CVE-2024-8872 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N September 25, 2024
Simple Calendar – Google Calendar Plugin <= 3.4.2 - Reflected Cross-Site Scripting CVE-2024-8549 6.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N September 24, 2024

Share this researcher's vulnerability discoveries

Did you know Wordfence Intelligence provides free personal and commercial API access to our comprehensive WordPress vulnerability database, along with a free webhook integration to stay on top of the latest vulnerabilities added and updated in the database? Get started today!

Learn more

Want to get notified of the latest vulnerabilities that may affect your WordPress site?
Install Wordfence on your site today to get notified immediately if your site is affected by a vulnerability that has been added to our database.

Get Wordfence

The Wordfence Intelligence WordPress vulnerability database is completely free to access and query via API. Please review the documentation on how to access and consume the vulnerability data via API.

Documentation