Shivamani Vastrala
Shivamani Vastrala is a security researcher credited with 30 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #174 of 3,515 contributors. The disclosure was published in 2026.
Their research concentrates on Missing Authorization, which accounts for 11 of their findings (37%). Other recurring categories include Authorization Bypass Through User-Controlled Key, Cross-Site Scripting. The average CVSS score across these disclosures is 5.5, peaking at 9.8. Severity breakdown: 1 critical and 2 high.
The most affected software includes Abandoned Cart Lite for WooCommerce (1), Admin Columns for ACF Fields (1), AI Engine (1), across 30 distinct plugins, themes and core versions in total.
27 of the 30 disclosed issues have a vendor fix, while 3 remain unpatched. The most severe finding, "Abandoned Cart Lite for WooCommerce <= 6.8.1 - Unauthenticated Privilege Escalation via Weak Recovery Link", scores 9.8 out of 10.
#174
of 3,515 researchers
33
33
5.5
Average score of vulnerabilities
Researcher Submissions
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C