Skip to content
Noroxi

LevinityCyber

Patchstack Bug Bounty Program

5 credited records · 5 in the last 12 months · 0 in CISA KEV

Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.

Credited records

Researchers
  • Directorist 8.9.1 - 8.9.4 - Subscriber+ Paid Order and Payment Record Forgery via REST Orders Endpoint

    MediumCVSS 4.3No exploitEPSS 0%

    unknown · directorist: ai-powered business directory, listings & classified adsSep 23, 2026

  • WordPress Bold Page Builder plugin <= 5.9.9 - Cross Site Scripting (XSS) vulnerability

    MediumCVSS 6.5No exploitEPSS 0%

    boldthemes · bold page builderSep 11, 2026

  • WordPress Lead Generation Contact Widget & AI Chatbot: Chat Button, Phone Call, Telegram, Email – SiteLeads plugin <= 1.2.0 - Sensitive Data Exposure vulnerabil

    HighCVSS 7.5No exploitEPSS 0%

    extend themes · lead generation contact widget &amp; ai chatbot: chat button, phone call, telegram, email – siteleadsAug 24, 2026

  • WordPress Survey Maker plugin <= 5.2.3.3 - Cross Site Scripting (XSS) vulnerability

    HighCVSS 7.1No exploitEPSS 0%

    ays pro · survey makerAug 6, 2026

  • Search Atlas SEO < 2.6.12 - Subscriber+ Google Indexing API Access

    MediumCVSS 5.4No exploitEPSS 0%

    unknown · search atlas seoJul 30, 2026