Benachi

Benachi is a security researcher credited with 10 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #411 of 3,515 contributors. Their disclosures were published between 2022 and 2026. The most productive year was 2022, with 7 findings.

Their research concentrates on Cross-Site Scripting, which accounts for 7 of their findings (70%). Other recurring categories include Improper Neutralization Of Formula Elements In A CSV File, Missing Authorization. The average CVSS score across these disclosures is 6.2, peaking at 8.8. Severity breakdown: 0 critical and 2 high.

The most affected software includes Request a Quote (2), Import CSV Files (1), PAYGENT for WooCommerce (1), across 9 distinct plugins, themes and core versions in total.

7 of the 10 disclosed issues have a vendor fix, while 3 remain unpatched. The most severe finding, "Welcart e-Commerce <= 2.9.4 - Authenticated (Subscriber+) Arbitrary File Upload", scores 8.8 out of 10.

20222023202420252026
Critical
High
Medium
Low
Global Rank

#411

of 3,515 researchers

Vulns

11

Critical0
High2
Medium9
Low0
Affected Assets

9

9plugins
Avg CVSS

6.1

Average score of vulnerabilities

Researcher Submissions

10 records
2026-01-16 19:57CVE-2025-14078
5.3
Medium
BenachiYes
2024-02-27 00:00CVE-2024-0700
6.4
Medium
BenachiNo
2023-11-14 00:00CVE-2023-5953
8.8
High
BenachiYes
2022-06-28 00:00CVE-2022-2239
5.5
Medium
BenachiYes
2022-06-28 00:00CVE-2022-2240
8.3
High
BenachiYes
2022-06-21 00:00CVE-2022-2146
6.1
Medium
BenachiNo
2022-06-21 00:00CVE-2022-2151
4.4
Medium
BenachiYes
2022-06-16 00:00CVE-2022-1546
6.1
Medium
BenachiYes
2022-06-02 00:00CVE-2022-1470
6.1
Medium
BenachiNo
2022-05-10 00:00CVE-2022-1566
4.8
Medium
BenachiYes
Showing 1–10 of 10 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C