D01EXPLOIT OFFICIAL
D01EXPLOIT OFFICIAL is a security researcher credited with 11 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #412 of 3,515 contributors. Their disclosures were published between 2025 and 2026. The most productive year was 2025, with 8 findings.
Their research concentrates on Missing Authorization, which accounts for 6 of their findings (55%). Other recurring categories include Server-Side Request Forgery (SSRF), Cross-Site Request Forgery (CSRF). The average CVSS score across these disclosures is 5.7, peaking at 9.8. Severity breakdown: 1 critical and 1 high.
The most affected software includes Printcart Store (2), Simple User Capabilities (2), AppPresser (1), across 9 distinct plugins, themes and core versions in total.
7 of the 11 disclosed issues have a vendor fix, while 4 remain unpatched. The most severe finding, "Simple User Capabilities <= 1.0 - Missing Authorization to Authenticated (Subscriber+) Privilege Escalation", scores 9.8 out of 10.
#412
of 3,515 researchers
11
9
5.7
Average score of vulnerabilities
Researcher Submissions
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C