Jonas Höbenreich

Jonas Höbenreich is a security researcher credited with 32 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #179 of 3,515 contributors. Their disclosures were published between 2023 and 2024. The most productive year was 2023, with 28 findings.

Their research concentrates on Missing Authorization, which accounts for 12 of their findings (38%). Other recurring categories include Cross-Site Scripting, Cross-Site Request Forgery (CSRF). The average CVSS score across these disclosures is 6.1, peaking at 9.8. Severity breakdown: 3 critical and 2 high.

The most affected software includes Online Booking & Scheduling Calendar… (5), Contact Form Builder by vcita (3), CRM and Lead Management by vcita (2), across 21 distinct plugins, themes and core versions in total.

29 of the 32 disclosed issues have a vendor fix, while 3 remain unpatched. The most severe finding, "Where I Was, Where I Will Be <= 1.1.1 - Unauthenticated Remote File Inclusion", scores 9.8 out of 10.

20232024
Critical
High
Medium
Low
Global Rank

#179

of 3,515 researchers

Vulns

32

Critical3
High2
Medium27
Low0
Affected Assets

22

22plugins
Avg CVSS

6.1

Average score of vulnerabilities

Researcher Submissions

32 records
2024-10-31 00:00CVE-2024-6479
6.5
Medium
Jonas HöbenreichYes
2024-10-31 00:00CVE-2024-6480
6.4
Medium
Jonas HöbenreichYes
2024-09-24 00:00CVE-2024-8678
5.3
Medium
Jonas HöbenreichYes
2024-06-13 00:00CVE-2024-5577
9.8
Critical
Jonas HöbenreichNo
2023-10-25 00:00CVE-2023-46626
6.1
Medium
Jonas HöbenreichNo
2023-10-25 00:00CVE-2023-32299
4.3
Medium
Jonas HöbenreichYes
2023-10-19 00:00CVE-2023-33215
5.4
Medium
Jonas HöbenreichYes
2023-10-16 00:00CVE-2023-46079
4.3
Medium
Jonas HöbenreichYes
2023-10-12 00:00CVE-2023-33214
4.3
Medium
Jonas HöbenreichYes
2023-10-03 00:00CVE-2023-2487
5.3
Medium
Jonas HöbenreichYes
Showing 1–10 of 32 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C