Nirmal Kavaiya

Nirmal Kavaiya is a security researcher credited with 3 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #1,217 of 3,515 contributors. Their disclosures were published between 2024 and 2025. The most productive year was 2025, with 2 findings.

Their research concentrates on Missing Authorization, which accounts for 2 of their findings (67%). Other recurring categories include Cross-Site Scripting. The average CVSS score across these disclosures is 5.0, peaking at 6.4.

The most affected software includes Bold Page Builder (1), ElementInvader Addons for Elementor (1), Super block slider (1), across 3 distinct plugins, themes and core versions in total.

All 3 disclosed issues have since received a vendor fix.

20242025
Critical
High
Medium
Low

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C