Skip to content
Noroxi

Fraudless

Patchstack Bug Bounty Program

2 credited records · 2 in the last 12 months · 0 in CISA KEV

Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.

Credited records

Researchers
  • FluentSMTP <= 2.2.95 - Unauthenticated Stored Cross-Site Scripting via Recipient Display Name (to.name) in Email Logs

    HighCVSS 7.2No exploitEPSS 1%

    wpmanageninja · fluentsmtp – wp smtp plugin with amazon ses, sendgrid, mailgun, postmark, cloudflare, tosend, gmail and any smtpAug 6, 2026

  • WordPress GetGenie plugin <= 4.4.2 - Sensitive Data Exposure vulnerability

    MediumCVSS 6.5No exploitEPSS 0%

    roxnor · getgenieJun 26, 2026