testoun

testoun is a security researcher credited with 10 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #449 of 3,513 contributors. The disclosure was published in 2026.

Their research concentrates on Cross-Site Scripting, which accounts for 9 of their findings (90%). Other recurring categories include Cross-Site Request Forgery (CSRF). The average CVSS score across these disclosures is 6.3, peaking at 7.2. Severity breakdown: 0 critical and 2 high.

The most affected software includes WP-Stats (2), BNE Testimonials (1), Codeless Page Builder (1), across 9 distinct plugins, themes and core versions in total.

4 of the 10 disclosed issues have a vendor fix, while 6 remain unpatched.

2026
Critical
High
Medium
Low
Global Rank

#449

of 3,513 researchers

Vulns

10

Critical0
High2
Medium8
Low0
Affected Assets

9

9plugins
Avg CVSS

6.3

Average score of vulnerabilities

Researcher Submissions

10 records
2026-08-17 00:00CVE-2026-15253
6.4
Medium
testounNo
2026-08-11 00:00CVE-2026-14290
6.4
Medium
testounNo
2026-08-10 00:00CVE-2026-15249
6.4
Medium
testounNo
2026-08-07 00:00CVE-2026-19794
7.2
High
testounYes
2026-08-07 00:00CVE-2026-66426
7.2
High
testounYes
2026-08-05 00:00CVE-2026-17010
6.4
Medium
testounNo
2026-08-03 00:00CVE-2026-15245
6.4
Medium
testounYes
2026-08-01 00:00CVE-2026-15234
6.4
Medium
testounNo
2026-07-31 00:00CVE-2026-16537
6.4
Medium
testounYes
2026-07-23 00:00CVE-2026-65540
4.3
Medium
testounNo
Showing 1–10 of 10 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C