Crucible Active

Vulnerability research against the WordPress plugin ecosystem, disclosed through the channels that assign CVE identifiers.

Crucible is an independent vulnerability research programme aimed at WordPress plugins — finding security defects, confirming them, and disclosing them responsibly so they get fixed and catalogued.

Findings appear here only once the CVE is public and the coordinating body confirms the disclosure process is complete. That is a condition rather than a waiting period, so there is always a gap between the work and anything written about it.

More in time.

Updates

No updates published yet.