Vincent Fourcade (vinceMatsui)

Vincent Fourcade (vinceMatsui) is a security researcher credited with 10 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #443 of 3,515 contributors. Their disclosures were published between 2024 and 2025. The most productive year was 2024, with 6 findings.

Their research concentrates on Cross-Site Scripting, which accounts for 6 of their findings (60%). Other recurring categories include Unrestricted Upload Of File With Dangerous Type, Path Traversal. The average CVSS score across these disclosures is 6.6, peaking at 9.6. Severity breakdown: 1 critical and 5 high.

The most affected software includes Simple Ajax Chat (3), WP Import Export Lite (2), Advanced Search (1), across 7 distinct plugins, themes and core versions in total.

8 of the 10 disclosed issues have a vendor fix, while 2 remain unpatched. The most severe finding, "AutomatorWP <= 5.0.9 - Reflected Cross-Site Scripting via a-0-o-search_field_value", scores 9.6 out of 10.

20242025
Critical
High
Medium
Low
Global Rank

#443

of 3,515 researchers

Vulns

10

Critical1
High5
Medium4
Low0
Affected Assets

7

7plugins
Avg CVSS

6.6

Average score of vulnerabilities

Researcher Submissions

10 records
2025-08-04 18:52CVE-2025-5061
7.5
High
Vincent Fourcade (vinceMatsui)Yes
2025-08-04 18:51CVE-2025-6207
7.5
High
Vincent Fourcade (vinceMatsui)Yes
2025-06-16 13:03CVE-2025-3774
7.2
High
Vincent Fourcade (vinceMatsui)Yes
2025-01-24 18:44CVE-2024-12885
6.5
Medium
Vincent Fourcade (vinceMatsui)No
2024-12-18 00:00CVE-2024-12626
9.6
Critical
Vincent Fourcade (vinceMatsui)Yes
2024-07-15 00:00CVE-2024-6498
4.4
Medium
Vincent Fourcade (vinceMatsui)Yes
2024-05-14 00:00CVE-2024-2470
4.4
Medium
Vincent Fourcade (vinceMatsui)Yes
2024-04-04 00:00CVE-2024-3265
7.2
High
Vincent Fourcade (vinceMatsui)No
2024-03-26 00:00CVE-2024-2956
4.4
Medium
Vincent Fourcade (vinceMatsui)Yes
2024-03-26 00:00CVE-2024-1983
7.2
High
Vincent Fourcade (vinceMatsui)Yes
Showing 1–10 of 10 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C