Usama Arshad
Usama Arshad is a security researcher credited with 16 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #321 of 3,515 contributors. Their disclosures were published between 2024 and 2026. The most productive year was 2026, with 15 findings.
Their research concentrates on Authorization Bypass Through User-Controlled Key, which accounts for 5 of their findings (31%). Other recurring categories include Exposure Of Sensitive Information To An Unauthorized Actor, Missing Authorization. The average CVSS score across these disclosures is 5.2, peaking at 6.4.
The most affected software includes Project Manager (2), WC Vendors (2), Accept Stripe Payments (1), across 14 distinct plugins, themes and core versions in total.
All 16 disclosed issues have since received a vendor fix.
#321
of 3,515 researchers
16
14
5.2
Average score of vulnerabilities
Researcher Submissions
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C