CVE_hunter
CVE_hunter is a security researcher credited with 6 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #636 of 3,515 contributors. The disclosure was published in 2025.
Their research concentrates on Code Injection, which accounts for 2 of their findings (33%). Other recurring categories include Path Traversal, Missing Authorization. The average CVSS score across these disclosures is 8.5, peaking at 9.8. Severity breakdown: 2 critical and 3 high.
The most affected software includes Catalog Importer, Scraper & Crawler (1), GB Forms DB (1), NewsBlogger (1), across 6 distinct plugins, themes and core versions in total.
5 of the 6 disclosed issues have a vendor fix, while 1 remain unpatched. The most severe finding, "GB Forms DB <= 1.0.2 - Unauthenticated Remote Code Execution", scores 9.8 out of 10.
#636
of 3,515 researchers
6
6
8.5
Average score of vulnerabilities
Researcher Submissions
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C