Daniel Púa - devploit
3 credited records · 3 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
17Monitor | CVE-2026-14231No exploit | LifterLMS < 10.0.10 - Subscriber+ Sensitive Information Disclosure via select2_query_postsunknown · lifterlms · CWE-200 | Medium4.3 | — | 0.3% | Jul 30, 2026 |
21Monitor | CVE-2026-11966No exploit | User Registration & Membership < 5.2.3 - Unauthenticated Limited User Deletion via Stripe Subscription Handlerunknown · user registration & membership · CWE-639 | Medium5.3 | — | 0.3% | Jul 17, 2026 |
34Monitor | CVE-2026-6379Proof of concept | WP Photo Album Plus < 9.1.11.001 - Unauthenticated SQL Injection via 'wppa-supersearch' Parameterunknown · wp photo album plus · CWE-89 | High8.6 | — | 0.4% | May 18, 2026 |
- CVE-2026-1423117Monitor
LifterLMS < 10.0.10 - Subscriber+ Sensitive Information Disclosure via select2_query_posts
MediumCVSS 4.3No exploitEPSS 0%unknown · lifterlmsJul 30, 2026
- CVE-2026-1196621Monitor
User Registration & Membership < 5.2.3 - Unauthenticated Limited User Deletion via Stripe Subscription Handler
MediumCVSS 5.3No exploitEPSS 0%unknown · user registration & membershipJul 17, 2026
- CVE-2026-637934Monitor
WP Photo Album Plus < 9.1.11.001 - Unauthenticated SQL Injection via 'wppa-supersearch' Parameter
HighCVSS 8.6Proof of conceptEPSS 0%unknown · wp photo album plusMay 18, 2026