Bugbang
Bugbang is a security researcher credited with 10 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #425 of 3,515 contributors. Their disclosures were published between 2021 and 2022. The most productive year was 2021, with 9 findings.
Their research concentrates on Improper Authorization, which accounts for 7 of their findings (70%). Other recurring categories include Deserialization Of Untrusted Data, Missing Authorization. The average CVSS score across these disclosures is 9.0, peaking at 9.8. Severity breakdown: 2 critical and 8 high.
The most affected software includes Limit Login Attempts (Spam Protection) (2), WP Maintenance Mode & Site Under… (2), Captchinoo (1), across 8 distinct plugins, themes and core versions in total.
All 10 disclosed issues have since received a vendor fix. The most severe finding, "Limit Login Attempts (Spam Protection) <= 4.9.1 - Unauthenticated SQL Injection", scores 9.8 out of 10.
#425
of 3,515 researchers
10
8
9.0
Average score of vulnerabilities
Researcher Submissions
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C