MD. TAREQ AHAMED JONY (itztrq)

MD. TAREQ AHAMED JONY (itztrq) is a security researcher credited with 9 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #490 of 3,515 contributors. The disclosure was published in 2026.

Their research concentrates on Missing Authorization, which accounts for 3 of their findings (33%). Other recurring categories include Exposure Of Sensitive Information To An Unauthorized Actor, Authorization Bypass Through User-Controlled Key. The average CVSS score across these disclosures is 5.9, peaking at 7.5. Severity breakdown: 0 critical and 3 high.

The most affected software includes WPBookit (2), Appointment Booking Calendar Plugin (1), Court Reservation (1), across 8 distinct plugins, themes and core versions in total.

6 of the 9 disclosed issues have a vendor fix, while 3 remain unpatched.

2026
Critical
High
Medium
Low
Global Rank

#490

of 3,515 researchers

Vulns

9

Critical0
High3
Medium6
Low0
Affected Assets

8

8plugins
Avg CVSS

5.9

Average score of vulnerabilities

Researcher Submissions

9 records
2026-05-21 19:21CVE-2026-8684
5.3
Medium
MD. TAREQ AHAMED JONY (itztrq)Yes
2026-05-12 10:05CVE-2026-1250
7.5
High
MD. TAREQ AHAMED JONY (itztrq)Yes
2026-04-17 10:47CVE-2026-2262
7.5
High
MD. TAREQ AHAMED JONY (itztrq)Yes
2026-03-03 12:30CVE-2026-1945
7.2
High
MD. TAREQ AHAMED JONY (itztrq)Yes
2026-03-03 12:28CVE-2026-1980
5.3
Medium
MD. TAREQ AHAMED JONY (itztrq)Yes
2026-02-13 18:27CVE-2026-1987
5.4
Medium
MD. TAREQ AHAMED JONY (itztrq)No
2026-02-13 17:29CVE-2026-1932
5.3
Medium
MD. TAREQ AHAMED JONY (itztrq)No
2026-02-13 16:18CVE-2026-1983
4.3
Medium
MD. TAREQ AHAMED JONY (itztrq)No
2026-01-23 19:23CVE-2025-14843
5.3
Medium
MD. TAREQ AHAMED JONY (itztrq)Yes
Showing 1–9 of 9 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C