Sanjay Das Payatu

Sanjay Das Payatu is a security researcher credited with 5 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #745 of 3,515 contributors. The disclosure was published in 2022.

Their research concentrates on SQL Injection, which accounts for 2 of their findings (40%). Other recurring categories include Authorization Bypass Through User-Controlled Key, Code Injection. The average CVSS score across these disclosures is 7.1, peaking at 8.8. Severity breakdown: 0 critical and 3 high.

The most affected software includes WP All Export Pro (2), WP Ultimate CSV Importer (2), Drag and Drop Multiple File Upload… (1), across 3 distinct plugins, themes and core versions in total.

All 5 disclosed issues have since received a vendor fix. The most severe finding, "WP ALL Export Pro <= 1.7.8 - Authenticated Remote Code Execution", scores 8.8 out of 10.

2022
Critical
High
Medium
Low

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C