Marcin Probola

Marcin Probola is a security researcher credited with 109 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #67 of 3,515 contributors. Their disclosures were published between 2015 and 2021. The most productive year was 2015, with 108 findings.

Their research concentrates on Cross-Site Scripting, which accounts for 66 of their findings (61%). Other recurring categories include SQL Injection, Cross-Site Request Forgery (CSRF). The average CVSS score across these disclosures is 7.0, peaking at 9.8. Severity breakdown: 11 critical and 35 high.

The most affected software includes Broken Link Manager (3), 3CX Free Live Chat, Calls & Messaging (2), Awesome Filterable Portfolio (2), across 96 distinct plugins, themes and core versions in total.

98 of the 109 disclosed issues have a vendor fix, while 11 remain unpatched. The most severe finding, "Google Map <= 2.2.5 - SQL Injection", scores 9.8 out of 10.

2015201620172018201920202021
Critical
High
Medium
Low
Global Rank

#67

of 3,515 researchers

Vulns

109

Critical11
High35
Medium63
Low0
Affected Assets

96

96plugins
Avg CVSS

7.0

Average score of vulnerabilities

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C