Yorick Koster,
Yorick Koster, is a security researcher credited with 36 disclosed vulnerabilities in the WordSec WordPress vulnerability database, ranked #162 of 3,515 contributors. Their disclosures were published between 2016 and 2018. The most productive year was 2016, with 26 findings.
Their research concentrates on Cross-Site Scripting, which accounts for 21 of their findings (58%). Other recurring categories include Deserialization Of Untrusted Data, Cross-Site Request Forgery (CSRF). The average CVSS score across these disclosures is 7.3, peaking at 9.8. Severity breakdown: 5 critical and 12 high.
The most affected software includes Google Forms (2), WordPress 4.7 (2), Activity Log (1), across 34 distinct plugins, themes and core versions in total.
33 of the 36 disclosed issues have a vendor fix, while 3 remain unpatched. The most severe finding, "Analytics Stats Counter Statistics <= 1.2.2.5 - Unauthenticated PHP Object Injection", scores 9.8 out of 10.
#162
of 3,515 researchers
36
34
7.3
Average score of vulnerabilities
Researcher Submissions
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C