ibrahimsql

ibrahimsql is a security researcher credited with 9 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #491 of 3,515 contributors. The disclosure was published in 2026.

Their research concentrates on Missing Authorization, which accounts for 5 of their findings (56%). Other recurring categories include Deserialization Of Untrusted Data, Exposure Of Sensitive Information To An Unauthorized Actor. The average CVSS score across these disclosures is 5.8, peaking at 8.1. Severity breakdown: 0 critical and 2 high.

The most affected software includes Adminify (1), Frontend File Manager Plugin (1), Gutena Forms (1), across 9 distinct plugins, themes and core versions in total.

6 of the 9 disclosed issues have a vendor fix, while 3 remain unpatched. The most severe finding, "Super Stage WP <= 1.0.1 - Unauthenticated PHP Object Injection", scores 8.1 out of 10.

2026
Critical
High
Medium
Low
Global Rank

#491

of 3,515 researchers

Vulns

9

Critical0
High2
Medium7
Low0
Affected Assets

9

9plugins
Avg CVSS

5.8

Average score of vulnerabilities

Researcher Submissions

9 records
2026-04-07 00:00CVE-2026-1900
5.3
Medium
ibrahimsqlYes
2026-03-30 00:00CVE-2026-1890
5.3
Medium
ibrahimsqlYes
2026-03-12 00:00CVE-2026-1753
4.3
Medium
ibrahimsqlYes
2026-03-05 00:00CVE-2026-2025
5.3
Medium
ibrahimsqlYes
2026-03-02 00:00CVE-2026-1542
8.1
High
ibrahimsqlNo
2026-02-19 00:00CVE-2026-1368
5.3
Medium
ibrahimsqlYes
2026-02-17 00:00CVE-2026-0829
5.3
Medium
ibrahimsqlNo
2026-01-27 00:00CVE-2026-1060
5.3
Medium
ibrahimsqlYes
2026-01-21 00:00CVE-2026-1235
8.1
High
ibrahimsqlNo
Showing 1–9 of 9 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C