Evex

Evex is a security researcher credited with 11 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #389 of 3,515 contributors. Their disclosures were published between 2012 and 2015. The most productive year was 2015, with 10 findings.

Their research concentrates on Improper Privilege Management, which accounts for 3 of their findings (27%). Other recurring categories include Missing Authorization, Code Injection. The average CVSS score across these disclosures is 8.8, peaking at 9.8. Severity breakdown: 4 critical and 6 high.

The most affected software includes Ajax Search Lite (1), Download Monitor (1), Faction (1), across 11 distinct plugins, themes and core versions in total.

7 of the 11 disclosed issues have a vendor fix, while 4 remain unpatched. The most severe finding, "YARPP – Yet Another Related Posts Plugin < 4.2.5 - Cross-Site Request Forgery", scores 9.8 out of 10.

2012201320142015
Critical
High
Medium
Low
Global Rank

#389

of 3,515 researchers

Vulns

11

Critical4
High6
Medium1
Low0
Affected Assets

12

5plugins7themes
Avg CVSS

8.8

Average score of vulnerabilities

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C