Webbernaut
Webbernaut is a security researcher credited with 253 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #33 of 3,515 contributors. Their disclosures were published between 2023 and 2026. The most productive year was 2024, with 142 findings.
Their research concentrates on Cross-Site Scripting, which accounts for 204 of their findings (81%). Other recurring categories include Deserialization Of Untrusted Data, Exposure Of Sensitive Information To An Unauthorized Actor. The average CVSS score across these disclosures is 6.4, peaking at 9.9. Severity breakdown: 4 critical and 27 high.
The most affected software includes Essential Addons for Elementor (13), Element Pack Addons for Elementor (8), Premium Addons for Elementor (8), across 155 distinct plugins, themes and core versions in total.
245 of the 253 disclosed issues have a vendor fix, while 8 remain unpatched. The most severe finding, "Widget Options – The #1 WordPress Widget & Block Control Plugin <= 4.0.7 - Authenticated (Contributor+) Remote Code Execution", scores 9.9 out of 10.
#33
of 3,515 researchers
253
185
6.4
Average score of vulnerabilities
Researcher Submissions
Showing the 250 most recent of 253 records. Every record has its own page and is listed in the sitemap.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C