alex_henry20

alex_henry20 is a security researcher credited with 8 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #551 of 3,513 contributors. The disclosure was published in 2026.

Their research concentrates on Authorization Bypass Through User-Controlled Key, which accounts for 2 of their findings (25%). Other recurring categories include Cross-Site Request Forgery (CSRF), Cross-Site Scripting. The average CVSS score across these disclosures is 5.4, peaking at 6.5.

The most affected software includes Appointment Booking Plugin (2), Dokan: AI Powered WooCommerce… (1), Download Monitor (1), across 7 distinct plugins, themes and core versions in total.

All 8 disclosed issues have since received a vendor fix.

2026
Critical
High
Medium
Low
Global Rank

#551

of 3,513 researchers

Vulns

8

Critical0
High0
Medium8
Low0
Affected Assets

7

7plugins
Avg CVSS

5.4

Average score of vulnerabilities

Researcher Submissions

8 records
2026-08-05 22:11CVE-2026-5391
6.4
Medium
alex_henry20Yes
2026-07-02 18:30CVE-2026-9230
4.3
Medium
alex_henry20Yes
2026-07-02 00:00CVE-2026-9756
6.4
Medium
alex_henry20Yes
2026-06-17 14:54CVE-2026-10023
4.3
Medium
alex_henry20Yes
2026-06-05 11:05CVE-2026-9719
4.3
Medium
alex_henry20Yes
2026-05-27 14:52CVE-2026-5737
6.5
Medium
alex_henry20Yes
2026-05-13 19:51CVE-2026-6206
5.3
Medium
alex_henry20Yes
2026-04-07 11:17CVE-2026-4401
5.4
Medium
alex_henry20Yes
Showing 1–8 of 8 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C