Cút lộn xào me
Cút lộn xào me is a security researcher credited with 14 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #337 of 3,515 contributors. The disclosure was published in 2025.
Their research concentrates on SQL Injection, which accounts for 4 of their findings (29%). Other recurring categories include Unrestricted Upload Of File With Dangerous Type, Missing Authorization. The average CVSS score across these disclosures is 8.1, peaking at 9.8. Severity breakdown: 4 critical and 6 high.
The most affected software includes WPCHURCH - Church Management System… (3), Hospital Management System for Wordpress (2), Bus Ticket Booking with Seat… (1), across 11 distinct plugins, themes and core versions in total.
5 of the 14 disclosed issues have a vendor fix, while 9 remain unpatched. The most severe finding, "Course Builder - Online Course WordPress Theme < 3.6.6 - Unauthenticated PHP Object Injection", scores 9.8 out of 10.
#337
of 3,515 researchers
14
11
8.1
Average score of vulnerabilities
Researcher Submissions
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C