w41bu1

w41bu1 is a security researcher credited with 20 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #254 of 3,515 contributors. Their disclosures were published between 2025 and 2026. The most productive year was 2026, with 18 findings.

Their research concentrates on Missing Authorization, which accounts for 7 of their findings (35%). Other recurring categories include Cross-Site Scripting, Cross-Site Request Forgery (CSRF). The average CVSS score across these disclosures is 5.7, peaking at 7.5. Severity breakdown: 0 critical and 5 high.

The most affected software includes Advanced Related Posts (1), AI ChatBot with ChatGPT and Content… (1), Appointment Booking Plugin (1), across 20 distinct plugins, themes and core versions in total.

18 of the 20 disclosed issues have a vendor fix, while 2 remain unpatched.

20252026
Critical
High
Medium
Low
Global Rank

#254

of 3,515 researchers

Vulns

20

Critical0
High5
Medium15
Low0
Affected Assets

20

19plugins1theme
Avg CVSS

5.7

Average score of vulnerabilities

Researcher Submissions

20 records
Showing 1–10 of 20 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C