Shreya Pohekar

Shreya Pohekar is a security researcher credited with 49 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #124 of 3,515 contributors. Their disclosures were published between 2021 and 2023. The most productive year was 2021, with 25 findings.

Their research concentrates on Cross-Site Scripting, which accounts for 22 of their findings (45%). Other recurring categories include SQL Injection, Cross-Site Request Forgery (CSRF). The average CVSS score across these disclosures is 6.4, peaking at 9.8. Severity breakdown: 2 critical and 17 high.

The most affected software includes RapidExpCart (2), AceIDE (1), amr ical events lists (1), across 48 distinct plugins, themes and core versions in total.

15 of the 49 disclosed issues have a vendor fix, while 34 remain unpatched. The most severe finding, "Edit Comments <= 0.3 - Unauthenticated SQL Injection", scores 9.8 out of 10.

202120222023
Critical
High
Medium
Low
Global Rank

#124

of 3,515 researchers

Vulns

49

Critical2
High17
Medium29
Low1
Affected Assets

48

48plugins
Avg CVSS

6.4

Average score of vulnerabilities

Researcher Submissions

49 records
2023-07-10 00:00CVE-2023-0602
6.1
Medium
Shreya PohekarNo
2023-06-19 00:00CVE-2023-2026
4.4
Medium
Shreya PohekarNo
2023-06-05 00:00CVE-2023-0588
6.1
Medium
Shreya PohekarYes
2023-06-02 00:00CVE-2023-0873
4.4
Medium
Shreya PohekarYes
2023-04-26 00:00CVE-2023-1977
6.3
Medium
Shreya PohekarYes
2023-04-25 00:00CVE-2023-0058
5.4
Medium
Shreya PohekarNo
2023-04-24 00:00CVE-2023-0644
6.1
Medium
Shreya PohekarNo
2023-04-19 00:00CVE-2023-0892
4.4
Medium
Shreya PohekarNo
2023-04-19 00:00CVE-2023-0520
6.1
Medium
Shreya PohekarNo
2023-04-19 00:00CVE-2023-0520
6.1
Medium
Shreya PohekarNo
Showing 1–10 of 49 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C