d4wner

d4wner is a security researcher credited with 45 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #134 of 3,515 contributors. The disclosure was published in 2018.

Their research concentrates on Cross-Site Scripting, which accounts for 34 of their findings (76%). Other recurring categories include Cross-Site Request Forgery (CSRF), Path Traversal. The average CVSS score across these disclosures is 6.3, peaking at 8.8. Severity breakdown: 0 critical and 11 high.

The most affected software includes Coming Soon Page (10), GD Rating System (8), WPGlobus (6), across 13 distinct plugins, themes and core versions in total.

44 of the 45 disclosed issues have a vendor fix, while 1 remain unpatched. The most severe finding, "Weblizar Pin Feeds < 1.1.2 - Cross-Site Request Forgery", scores 8.8 out of 10.

2018
Critical
High
Medium
Low
Global Rank

#134

of 3,515 researchers

Vulns

45

Critical0
High11
Medium34
Low0
Affected Assets

13

13plugins
Avg CVSS

6.3

Average score of vulnerabilities

Researcher Submissions

45 records
2018-12-13 00:00CVE-2018-5668
5.5
Medium
d4wnerYes
2018-11-13 00:00CVE-2018-5656
8.8
High
d4wnerYes
2018-11-13 00:00CVE-2018-5669
8.8
High
d4wnerYes
2018-11-13 00:00CVE-2018-5311
5.4
Medium
d4wnerYes
2018-11-13 00:00CVE-2018-5655
6.1
Medium
d4wnerYes
2018-11-13 00:00CVE-2018-5312
5.4
Medium
d4wnerYes
2018-01-22 00:00CVE-2018-5657
5.5
Medium
d4wnerYes
2018-01-12 00:00CVE-2018-5658
8.8
High
d4wnerYes
2018-01-12 00:00CVE-2018-5662
5.5
Medium
d4wnerYes
2018-01-12 00:00CVE-2018-5661
5.5
Medium
d4wnerYes
Showing 1–10 of 45 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C