Leonid Semenenko (lsemenenko)
Leonid Semenenko (lsemenenko) is a security researcher credited with 13 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #352 of 3,515 contributors. The disclosure was published in 2026.
Their research concentrates on SQL Injection, which accounts for 6 of their findings (46%). Other recurring categories include External Control Of File Name Or Path, Path Traversal. The average CVSS score across these disclosures is 7.6, peaking at 8.8. Severity breakdown: 0 critical and 11 high.
The most affected software includes wpForo Forum (3), Betheme (2), AMP for WP (1), across 10 distinct plugins, themes and core versions in total.
All 13 disclosed issues have since received a vendor fix. The most severe finding, "Betheme <= 28.4 - Authenticated (Author+) Arbitrary File Upload to Remote Code Execution via Icon Pack Upload", scores 8.8 out of 10.
#352
of 3,515 researchers
13
10
7.6
Average score of vulnerabilities
Researcher Submissions
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C