Noman Riffat
Noman Riffat is a security researcher credited with 7 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #561 of 3,515 contributors. Their disclosures were published between 2018 and 2026. The most productive year was 2026, with 3 findings.
Their research concentrates on SQL Injection, which accounts for 2 of their findings (29%). Other recurring categories include Improper Authentication, Improper Privilege Management. The average CVSS score across these disclosures is 8.6, peaking at 10.0. Severity breakdown: 3 critical and 3 high.
The most affected software includes UserPro - Community and User Profile… (2), Booked - Appointment Booking… (1), Charitable (1), across 6 distinct plugins, themes and core versions in total.
All 7 disclosed issues have since received a vendor fix. The most severe finding, "UserPro <= 4.9.20 - Privilege Escalation", scores 10.0 out of 10.
#561
of 3,515 researchers
7
6
8.6
Average score of vulnerabilities
Researcher Submissions
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C