dcs
Patchstack Bug Bounty Program
4 credited records · 4 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
28Monitor | CVE-2026-94176No exploit | WordPress Mang Board WP plugin <= 2.4.1 - Cross Site Scripting (XSS) vulnerabilitykitae park · mang board wp · CWE-79 | High7.1 | — | 0.2% | 6 days ago |
8Monitor | CVE-2024-56808No exploit | Media Streaming add-onqnap · media streaming add-on · CWE-78 | Low2.0 | — | 0.6% | Feb 11, 2026 |
6Monitor | CVE-2024-56807No exploit | Media Streaming add-onqnap · media streaming add-on · CWE-125 | Low1.7 | — | 0.1% | Feb 11, 2026 |
26Monitor | CVE-2025-4645No exploit | An ACAP configuration file lacked sufficient input validation, which could allow for arbitrary code execution.axis · axis os · CWE-1287 | Medium6.7 | — | 0.1% | Nov 11, 2025 |
- CVE-2026-9417628Monitor
WordPress Mang Board WP plugin <= 2.4.1 - Cross Site Scripting (XSS) vulnerability
HighCVSS 7.1No exploitEPSS 0%kitae park · mang board wp6 days ago
- CVE-2024-568088Monitor
Media Streaming add-on
LowCVSS 2.0No exploitEPSS 1%qnap · media streaming add-onFeb 11, 2026
- CVE-2024-568076Monitor
Media Streaming add-on
LowCVSS 1.7No exploitEPSS 0%qnap · media streaming add-onFeb 11, 2026
- CVE-2025-464526Monitor
An ACAP configuration file lacked sufficient input validation, which could allow for arbitrary code execution.
MediumCVSS 6.7No exploitEPSS 0%axis · axis osNov 11, 2025