mikemyers

mikemyers is a security researcher credited with 123 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #62 of 3,515 contributors. Their disclosures were published between 2022 and 2026. The most productive year was 2025, with 92 findings.

Their research concentrates on SQL Injection, which accounts for 23 of their findings (19%). Other recurring categories include Code Injection, Missing Authorization. The average CVSS score across these disclosures is 7.4, peaking at 9.8. Severity breakdown: 15 critical and 66 high.

The most affected software includes Events Manager (3), Ultimate Member (3), Uncanny Automator (3), across 104 distinct plugins, themes and core versions in total.

All 123 disclosed issues have since received a vendor fix. The most severe finding, "ShopLentor <= 3.2.5 - Unauthenticated Local PHP File Inclusion via 'load_template'", scores 9.8 out of 10.

20222023202420252026
Critical
High
Medium
Low
Global Rank

#62

of 3,515 researchers

Vulns

123

Critical15
High66
Medium42
Low0
Affected Assets

111

105plugins5themes1core version
Avg CVSS

7.4

Average score of vulnerabilities

Researcher Submissions

123 records
2026-07-15 20:13CVE-2026-15005
8.8
High
mikemyersYes
2026-05-28 21:09CVE-2025-12714
5.3
Medium
mikemyersYes
2026-05-28 18:06CVE-2025-11262
7.2
High
mikemyersYes
2026-03-10 15:36CVE-2025-13067
8.8
High
mikemyersYes
2026-02-18 14:59CVE-2025-11725
6.5
Medium
mikemyersYes
2026-02-18 14:55CVE-2025-11706
6.1
Medium
mikemyersYes
2026-02-16 10:59CVE-2025-12062
8.8
High
mikemyersYes
2026-01-22 18:30CVE-2024-11976
7.3
High
mikemyersYes
2026-01-15 16:28CVE-2025-12957
8.8
High
mikemyersYes
2026-01-15 01:09CVE-2025-13062
8.8
High
mikemyersYes
Showing 1–10 of 123 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C