Osvaldo Noe Gonzalez Del Rio (Os)

Osvaldo Noe Gonzalez Del Rio (Os) is a security researcher credited with 68 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #94 of 3,515 contributors. The disclosure was published in 2026.

Their research concentrates on Cross-Site Scripting, which accounts for 30 of their findings (44%). Other recurring categories include Missing Authorization, Authorization Bypass Through User-Controlled Key. The average CVSS score across these disclosures is 6.9, peaking at 9.8. Severity breakdown: 5 critical and 24 high.

The most affected software includes Divi (5), InfusedWoo Pro (5), Gutenverse (3), across 52 distinct plugins, themes and core versions in total.

67 of the 68 disclosed issues have a vendor fix, while 1 remain unpatched. The most severe finding, "Mailgun for WordPress <= 2.2.0 - Unauthenticated Server-Side Request Forgery (SSRF) via 'addresses' Array Keys", scores 9.8 out of 10.

2026
Critical
High
Medium
Low
Global Rank

#94

of 3,515 researchers

Vulns

68

Critical5
High24
Medium39
Low0
Affected Assets

52

47plugins5themes
Avg CVSS

6.9

Average score of vulnerabilities

Researcher Submissions

68 records
2026-09-07 00:00CVE-2026-9331
7.1
High
Osvaldo Noe Gonzalez Del Rio (Os)Yes
2026-09-04 18:15CVE-2026-3853
6.4
Medium
Osvaldo Noe Gonzalez Del Rio (Os)Yes
2026-09-04 18:13CVE-2026-4361
5.0
Medium
Osvaldo Noe Gonzalez Del Rio (Os)Yes
2026-09-02 19:51CVE-2026-3852
6.4
Medium
Osvaldo Noe Gonzalez Del Rio (Os)Yes
2026-09-01 17:38CVE-2026-3850
6.4
Medium
Osvaldo Noe Gonzalez Del Rio (Os)Yes
2026-09-01 14:46CVE-2026-3851
6.4
Medium
Osvaldo Noe Gonzalez Del Rio (Os)Yes
2026-08-31 15:53CVE-2026-13203
6.4
Medium
Osvaldo Noe Gonzalez Del Rio (Os)Yes
2026-08-27 14:09CVE-2026-77365
7.2
High
Osvaldo Noe Gonzalez Del Rio (Os)Yes
2026-08-25 00:00CVE-2026-3002
6.4
Medium
Osvaldo Noe Gonzalez Del Rio (Os)Yes
2026-08-24 15:00CVE-2026-19892
8.8
High
Osvaldo Noe Gonzalez Del Rio (Os)Yes
Showing 1–10 of 68 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C