Nguyen Ngoc Duc (duc193)
Nguyen Ngoc Duc (duc193) is a security researcher credited with 21 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #239 of 3,515 contributors. The disclosure was published in 2026.
Their research concentrates on Improper Authentication, which accounts for 4 of their findings (19%). Other recurring categories include SQL Injection, Unrestricted Upload Of File With Dangerous Type. The average CVSS score across these disclosures is 8.0, peaking at 9.8. Severity breakdown: 5 critical and 12 high.
The most affected software includes LoginPress Pro (3), Advanced Database Cleaner (1), Advanced Google reCAPTCHA (1), across 19 distinct plugins, themes and core versions in total.
20 of the 21 disclosed issues have a vendor fix, while 1 remain unpatched. The most severe finding, "EventON - WordPress Virtual Event Calendar Plugin <= 5.0.11 - Unauthenticated Blind SQL Injection via Search Parameter", scores 9.8 out of 10.
#239
of 3,515 researchers
21
19
8.0
Average score of vulnerabilities
Researcher Submissions
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C