CatFather
CatFather is a security researcher credited with 39 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #156 of 3,515 contributors. The disclosure was published in 2024.
Their research concentrates on Cross-Site Scripting, which accounts for 21 of their findings (54%). Other recurring categories include Missing Authorization, Deserialization Of Untrusted Data. The average CVSS score across these disclosures is 5.9, peaking at 9.9. Severity breakdown: 2 critical and 2 high.
The most affected software includes SP Project & Document Manager (3), Church Admin (2), Contest Gallery (2), across 31 distinct plugins, themes and core versions in total.
31 of the 39 disclosed issues have a vendor fix, while 8 remain unpatched. The most severe finding, "SP Project & Document Manager <= 4.71 - Authenticated (Author+) SQL Injeciton", scores 9.9 out of 10.
#156
of 3,515 researchers
39
31
5.9
Average score of vulnerabilities
Researcher Submissions
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C