James Golovich
James Golovich is a security researcher credited with 50 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #119 of 3,515 contributors. Their disclosures were published between 2014 and 2023. The most productive year was 2016, with 31 findings.
Their research concentrates on Missing Authorization, which accounts for 22 of their findings (44%). Other recurring categories include Improper Privilege Management, Unrestricted Upload Of File With Dangerous Type. The average CVSS score across these disclosures is 7.7, peaking at 9.9. Severity breakdown: 14 critical and 18 high.
The most affected software includes WP-Invoice (6), Download Manager (3), Ultimate Member (3), across 37 distinct plugins, themes and core versions in total.
All 50 disclosed issues have since received a vendor fix. The most severe finding, "Simple Download Monitor <= 3.2.8 - Missing Authorization", scores 9.9 out of 10.
#119
of 3,515 researchers
50
50
7.7
Average score of vulnerabilities
Researcher Submissions
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C