Asaf Mozes

Asaf Mozes is a security researcher credited with 43 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #146 of 3,515 contributors. Their disclosures were published between 2024 and 2026. The most productive year was 2025, with 32 findings.

Their research concentrates on Cross-Site Scripting, which accounts for 38 of their findings (88%). Other recurring categories include Improper Validation Of Integrity Check Value, Cross-Site Request Forgery (CSRF). The average CVSS score across these disclosures is 6.1, peaking at 7.2. Severity breakdown: 0 critical and 1 high.

The most affected software includes Forminator Forms (5), WPForms (5), Booking Calendar (2), across 32 distinct plugins, themes and core versions in total.

All 43 disclosed issues have since received a vendor fix.

202420252026
Critical
High
Medium
Low
Global Rank

#146

of 3,515 researchers

Vulns

43

Critical0
High1
Medium42
Low0
Affected Assets

161

158plugins1theme2core versions
Avg CVSS

6.1

Average score of vulnerabilities

Researcher Submissions

43 records
2026-09-01 00:00CVE-2026-82884
6.4
Medium
Asaf MozesYes
2026-08-08 00:00N/A
6.4
Medium
Asaf MozesYes
2026-07-21 20:13CVE-2026-15787
6.4
Medium
Asaf MozesYes
2026-07-20 19:35CVE-2026-15145
6.4
Medium
Asaf MozesYes
2026-07-20 16:53CVE-2026-15782
4.9
Medium
Asaf MozesYes
2026-04-30 17:17CVE-2024-13362
6.1
Medium
Asaf MozesYes
2026-03-10 00:00N/A
4.4
Medium
Asaf MozesYes
2025-12-15 22:04CVE-2025-11220
6.4
Medium
Asaf MozesYes
2025-07-29 07:07CVE-2025-5684
6.4
Medium
Asaf MozesYes
2025-07-28 16:22CVE-2025-4566
6.4
Medium
Asaf MozesYes
Showing 1–10 of 43 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C