Tarcísio Luchesi(Poystick)
Tarcísio Luchesi(Poystick) is a security researcher credited with 6 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #677 of 3,515 contributors. Their disclosures were published between 2025 and 2026. The most productive year was 2026, with 3 findings.
Their research concentrates on Cross-Site Scripting, which accounts for 4 of their findings (67%). Other recurring categories include Missing Authorization, PHP Remote File Inclusion. The average CVSS score across these disclosures is 6.0, peaking at 7.2. Severity breakdown: 0 critical and 1 high.
The most affected software includes Bold Page Builder (1), Easy Invoice (1), Fluent Booking (1), across 6 distinct plugins, themes and core versions in total.
All 6 disclosed issues have since received a vendor fix.
#677
of 3,515 researchers
6
6
6.1
Average score of vulnerabilities
Researcher Submissions
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C