Flo
4 credited records · 0 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
28Monitor | CVE-2025-7050No exploit | Use-your-Drive | Google Drive plugin for WordPress <= 3.3.1- Unauthenticated Stored Cross-Site Scripting via File Metadatawp cloud plugins/_deleeuw_ · use-your-drive | google drive plugin for wordpress · CWE-79 | High7.2 | — | 0.3% | Aug 5, 2025 |
30Monitor | CVE-2024-10028No exploit | Everest Backup – WordPress Cloud Backup, Migration, Restore & Cloning Plugin <= 2.2.13 - Sensitive Invormation Disclosure via procstat Logeverestthemes · everest backup · CWE-922 | High7.5 | — | 0.5% | Nov 5, 2024 |
26Monitor | CVE-2024-10008No exploit | Masteriyo LMS – eLearning and Online Course Builder for WordPress <= 1.13.3 - Authenticated (Student+) Missing Authorization to Privilege Escalationmasteriyo · masteriyo · CWE-862 | Medium6.5 | — | 0.6% | Oct 29, 2024 |
21Monitor | CVE-2024-10000No exploit | Masteriyo LMS – eLearning and Online Course Builder for WordPress <= 1.13.3 - Authenticated (Student+) Stored Cross-Site Scripting via Ask a Question Functionalmasteriyo · masteriyo · CWE-79 | Medium5.4 | — | 0.3% | Oct 29, 2024 |
- CVE-2025-705028Monitor
Use-your-Drive | Google Drive plugin for WordPress <= 3.3.1- Unauthenticated Stored Cross-Site Scripting via File Metadata
HighCVSS 7.2No exploitEPSS 0%wp cloud plugins/_deleeuw_ · use-your-drive | google drive plugin for wordpressAug 5, 2025
- CVE-2024-1002830Monitor
Everest Backup – WordPress Cloud Backup, Migration, Restore & Cloning Plugin <= 2.2.13 - Sensitive Invormation Disclosure via procstat Log
HighCVSS 7.5No exploitEPSS 0%everestthemes · everest backupNov 5, 2024
- CVE-2024-1000826Monitor
Masteriyo LMS – eLearning and Online Course Builder for WordPress <= 1.13.3 - Authenticated (Student+) Missing Authorization to Privilege Escalation
MediumCVSS 6.5No exploitEPSS 1%masteriyo · masteriyoOct 29, 2024
- CVE-2024-1000021Monitor
Masteriyo LMS – eLearning and Online Course Builder for WordPress <= 1.13.3 - Authenticated (Student+) Stored Cross-Site Scripting via Ask a Question Functional
MediumCVSS 5.4No exploitEPSS 0%masteriyo · masteriyoOct 29, 2024