yuyudhn

yuyudhn is a security researcher credited with 160 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #49 of 3,515 contributors. Their disclosures were published between 2022 and 2026. The most productive year was 2023, with 157 findings.

Their research concentrates on Cross-Site Scripting, which accounts for 110 of their findings (69%). Other recurring categories include Cross-Site Request Forgery (CSRF), Missing Authorization. The average CVSS score across these disclosures is 5.2, peaking at 8.8. Severity breakdown: 0 critical and 8 high.

The most affected software includes Booking calendar (4), Quick Paypal Payments (4), Multi Rating (3), across 128 distinct plugins, themes and core versions in total.

127 of the 160 disclosed issues have a vendor fix, while 33 remain unpatched. The most severe finding, "WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) <= 7.5.14 - Cross-Site Request Forgery", scores 8.8 out of 10.

20222023202420252026
Critical
High
Medium
Low
Global Rank

#49

of 3,515 researchers

Vulns

160

Critical0
High8
Medium151
Low1
Affected Assets

128

128plugins
Avg CVSS

5.2

Average score of vulnerabilities

Researcher Submissions

160 records
2026-08-04 18:44CVE-2026-11969
4.9
Medium
yuyudhnYes
2024-01-27 00:00CVE-2023-24407
4.1
Medium
yuyudhnYes
2023-11-29 00:00CVE-2023-49180
5.5
Medium
yuyudhnNo
2023-11-27 00:00CVE-2023-34018
4.4
Medium
yuyudhnYes
2023-11-07 00:00CVE-2023-47655
4.3
Medium
yuyudhnYes
2023-11-07 00:00CVE-2023-47654
6.4
Medium
yuyudhnYes
2023-11-07 00:00CVE-2023-47511
4.4
Medium
yuyudhnYes
2023-11-07 00:00CVE-2023-47656
5.5
Medium
yuyudhnYes
2023-11-03 00:00CVE-2023-47226
4.4
Medium
yuyudhnYes
2023-11-03 00:00CVE-2023-47227
4.4
Medium
yuyudhnNo
Showing 1–10 of 160 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C