Duc Manh

Duc Manh is a security researcher credited with 11 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #418 of 3,515 contributors. Their disclosures were published between 2023 and 2026. The most productive year was 2023, with 4 findings.

Their research concentrates on Cross-Site Request Forgery (CSRF), which accounts for 5 of their findings (45%). Other recurring categories include Missing Authorization, Cross-Site Scripting. The average CVSS score across these disclosures is 5.1, peaking at 6.5.

The most affected software includes Interactive Contact Form and Multi… (4), Lead Form Builder & Contact Form (2), Advanced File Manager (1), across 7 distinct plugins, themes and core versions in total.

All 11 disclosed issues have since received a vendor fix.

2023202420252026
Critical
High
Medium
Low
Global Rank

#418

of 3,515 researchers

Vulns

11

Critical0
High0
Medium11
Low0
Affected Assets

8

8plugins
Avg CVSS

5.1

Average score of vulnerabilities

Researcher Submissions

11 records
2026-06-17 00:00CVE-2026-12120
5.3
Medium
Duc ManhYes
2025-10-10 20:39CVE-2025-9950
4.9
Medium
Duc ManhYes
2025-03-14 22:58CVE-2025-1530
4.3
Medium
Duc ManhYes
2025-03-06 00:00CVE-2024-13805
6.4
Medium
Duc ManhYes
2024-06-06 00:00CVE-2023-5424
4.7
Medium
Duc ManhYes
2024-04-11 00:00CVE-2024-1416
4.3
Medium
Duc ManhYes
2024-04-11 00:00CVE-2024-1415
4.3
Medium
Duc ManhYes
2023-11-01 00:00CVE-2023-5386
6.5
Medium
Alex ThomasYes
2023-11-01 00:00CVE-2023-5382
6.5
Medium
Duc ManhYes
2023-11-01 00:00CVE-2023-5383
4.3
Medium
Duc ManhYes
Showing 1–10 of 11 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C