João Pedro S Alcântara (Kinorth)
João Pedro S Alcântara (Kinorth) is a security researcher credited with 52 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #111 of 3,333 contributors. The disclosure was published in 2026.
Their research concentrates on PHP Remote File Inclusion, which accounts for 23 of their findings (44%). Other recurring categories include Cross-Site Scripting, Deserialization Of Untrusted Data. The average CVSS score across these disclosures is 7.0, peaking at 8.1. Severity breakdown: 0 critical and 37 high.
The most affected software includes Real Estate 7 WordPress (3), Aalto - Architecture and Interior… (1), Accalia (1), across 50 distinct plugins, themes and core versions in total.
13 of the 52 disclosed issues have a vendor fix, while 39 remain unpatched. The most severe finding, "AI ANN - AI Generator & AI Agency WordPress Theme <= 1.29.0 - Unauthenticated PHP Object Injection", scores 8.1 out of 10.
#111
of 3,333 researchers
52
50
7.0
Average score of vulnerabilities
Researcher Submissions
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C