Kazuma Matsumoto
Kazuma Matsumoto is a security researcher credited with 25 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #219 of 3,515 contributors. The disclosure was published in 2026.
Their research concentrates on Missing Authorization, which accounts for 9 of their findings (36%). Other recurring categories include Cross-Site Scripting, Authorization Bypass Through User-Controlled Key. The average CVSS score across these disclosures is 5.5, peaking at 8.8. Severity breakdown: 0 critical and 4 high.
The most affected software includes AI Copilot (5), Booktics (2), Meta-box GalleryMeta (2), across 18 distinct plugins, themes and core versions in total.
22 of the 25 disclosed issues have a vendor fix, while 3 remain unpatched. The most severe finding, "Genolve – AI image AI video generation <= 5.0.5 - Authenticated (Contributor+) Incorrect Authorization to Privilege Escalation via theopt", scores 8.8 out of 10.
#219
of 3,515 researchers
25
18
5.5
Average score of vulnerabilities
Researcher Submissions
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C