Pricing
Solutions
WordPress security
Instantly fix and mitigate vulnerabilities
Plugin auditing
Paid auditing for WordPress vendors
Managed VDP
Start a security program for your plugins
Bug Bounty
Join the community and earn bounties
Enterprise API
At scale monitoring and vPatching for hosts
Vulnerability database
The latest WordPress security intelligence
Login
Start trial
Jonas Höbenreich
125.5
XP
14
Reports
0
Reports, last 90 days
#12
17 Nov, 2025
Lvl 1
0
0
0
0
Website
X
GitHub
Sort by
Priority
Severity
Exploited
Search
Affected software | Vulnerability
CVE
AXP
Severity
Reported
Ni WooCommerce Sales Report
<= 3.7.3
Broken Access Control
N/A
6.5
May 6, 2023
FLOWFACT WP Connector
<= 2.1.8
Cross Site Scripting (XSS)
N/A
7.1
May 6, 2023
Taggbox
<= 3.3
Broken Access Control
5.4
5.4
May 11, 2023
Ashe Extra
<= 1.2.9
Broken Access Control
5.4
5.4
May 20, 2023
Taggbox
<= 3.3
Cross Site Request Forgery (CSRF)
2.7
5.4
May 11, 2023
WP Ultimate Exporter
<= 2.4.1
Sensitive Data Exposure
11.8
5.9
May 2, 2023
Surfer
<= 1.3.2.357
Broken Access Control
7.6
7.6
Jun 9, 2023
Password Reset with Code for WordPress REST API
<= 0.0.15
Broken Authentication
19.6
9.8
Jun 8, 2023
Kangu para WooCommerce
<= 2.2.9
Cross Site Scripting (XSS)
14.2
7.1
May 7, 2023
Easy!Appointments
<= 1.3.3
Arbitrary File Deletion
N/A
6.3
May 5, 2023
LWS Affiliation
<= 2.2.6
Local File Inclusion
36
9
May 6, 2023
Greeklish-permalink
<= 3.3
Privilege Escalation
N/A
6.5
No date
CRM and Lead Management by vcita
<= 2.6.2
Cross Site Scripting (XSS)
N/A
6.4
No date
Online Booking & Scheduling Calendar for WordPress by vcita
< 4.3.2
Cross Site Scripting (XSS)
N/A
7.1
No date
Online Booking & Scheduling Calendar for WordPress by vcita
<= 4.2.10
Broken Access Control
N/A
5.4
No date
Contact Form Builder by vcita
<= 4.10.3
Cross Site Scripting (XSS)
N/A
6.1
No date
Contact Form and Calls To Action by vcita
<= 2.7.1
Cross Site Scripting (XSS)
N/A
6.4
No date
Online Booking & Scheduling Calendar for WordPress by vcita
<= 4.4.2
Broken Access Control
N/A
5.3
No date
Online Booking & Scheduling Calendar for WordPress by vcita
<= 4.4.6
Arbitrary File Upload
N/A
9.9
No date
Contact Form and Calls To Action by vcita
<= 2.7.1
Cross Site Scripting (XSS)
N/A
6.1
No date
Contact Form Builder by vcita
<= 4.9.1
Cross Site Scripting (XSS)
N/A
6.5
No date
CRM and Lead Management by vcita
<= 2.7.0
Cross Site Scripting (XSS)
N/A
6.1
No date
reCAPTCHA for all
<= 1.22
Broken Access Control
4.3
4.3
May 9, 2023
SALERT
<= 1.2.1
Broken Access Control
4.3
4.3
May 3, 2023
SALERT
<= 1.2.1
Cross Site Scripting (XSS)
14.2
7.1
May 3, 2023
Report vulnerabilities to earn bounties and rewards!
Read more
Include pending
Back to top