Eddie Zhang (Project Black)
Eddie Zhang (Project Black) is a security researcher credited with 11 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #388 of 3,515 contributors. The disclosure was published in 2024.
Their research concentrates on SQL Injection, which accounts for 7 of their findings (64%). Other recurring categories include PHP Remote File Inclusion, Cross-Site Scripting. The average CVSS score across these disclosures is 9.6, peaking at 10.0. Severity breakdown: 10 critical and 0 high.
The most affected software includes CZ Loan Management (1), Grow by Tradedoubler (1), News Element Elementor Blog Magazine (1), across 11 distinct plugins, themes and core versions in total.
8 of the 11 disclosed issues have a vendor fix, while 3 remain unpatched. The most severe finding, "TrueBooker <= 1.0.3 - Unauthenticated SQL Injection", scores 10.0 out of 10.
#388
of 3,515 researchers
11
11
9.6
Average score of vulnerabilities
Researcher Submissions
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C