Vincent Fourcade (vinceMatsui)
Vincent Fourcade (vinceMatsui) is a security researcher credited with 10 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #443 of 3,515 contributors. Their disclosures were published between 2024 and 2025. The most productive year was 2024, with 6 findings.
Their research concentrates on Cross-Site Scripting, which accounts for 6 of their findings (60%). Other recurring categories include Unrestricted Upload Of File With Dangerous Type, Path Traversal. The average CVSS score across these disclosures is 6.6, peaking at 9.6. Severity breakdown: 1 critical and 5 high.
The most affected software includes Simple Ajax Chat (3), WP Import Export Lite (2), Advanced Search (1), across 7 distinct plugins, themes and core versions in total.
8 of the 10 disclosed issues have a vendor fix, while 2 remain unpatched. The most severe finding, "AutomatorWP <= 5.0.9 - Reflected Cross-Site Scripting via a-0-o-search_field_value", scores 9.6 out of 10.
#443
of 3,515 researchers
10
7
6.6
Average score of vulnerabilities
Researcher Submissions
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C