siavashvafshar
siavashvafshar is a security researcher credited with 8 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #531 of 3,515 contributors. The disclosure was published in 2025.
Their research concentrates on Cross-Site Scripting, which accounts for 6 of their findings (75%). Other recurring categories include Improper Neutralization Of Script-Related HTML Tags In A Web Page (Basic XSS), Unrestricted Upload Of File With Dangerous Type. The average CVSS score across these disclosures is 6.4, peaking at 8.8. Severity breakdown: 0 critical and 1 high.
The most affected software includes Download Manager (1), Event Booking Manager for WooCommerce (1), Link Library (1), across 8 distinct plugins, themes and core versions in total.
6 of the 8 disclosed issues have a vendor fix, while 2 remain unpatched. The most severe finding, "Pixabay Images <= 3.4 - Authenticated (Author+) Arbitrary File Upload", scores 8.8 out of 10.
#531
of 3,515 researchers
8
8
6.4
Average score of vulnerabilities
Researcher Submissions
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C