D01EXPLOIT
Patchstack Bug Bounty Program
3 credited records · 2 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
21Monitor | CVE-2025-62964No exploit | WordPress MDTF plugin <= 1.3.6 - Broken Access Control vulnerabilityrealmag777 · mdtf · CWE-862 | Medium5.3 | — | 0.2% | Oct 26, 2025 |
21Monitor | CVE-2025-62895No exploit | WordPress Atarim plugin <= 4.2.1 - Sensitive Data Exposure vulnerabilityvito peleg · atarim · CWE-201 | Medium5.3 | — | 0.3% | Oct 26, 2025 |
21Monitor | CVE-2025-57896No exploit | WordPress Church Admin Plugin <= 5.0.26 - Broken Access Control Vulnerabilityandy_moyle · church admin · CWE-862 | Medium5.3 | — | 0.2% | Aug 22, 2025 |
- CVE-2025-6296421Monitor
WordPress MDTF plugin <= 1.3.6 - Broken Access Control vulnerability
MediumCVSS 5.3No exploitEPSS 0%realmag777 · mdtfOct 26, 2025
- CVE-2025-6289521Monitor
WordPress Atarim plugin <= 4.2.1 - Sensitive Data Exposure vulnerability
MediumCVSS 5.3No exploitEPSS 0%vito peleg · atarimOct 26, 2025
- CVE-2025-5789621Monitor
WordPress Church Admin Plugin <= 5.0.26 - Broken Access Control Vulnerability
MediumCVSS 5.3No exploitEPSS 0%andy_moyle · church adminAug 22, 2025