DIVD logo
About DIVD DIVD Community Security
Notification email

About DIVD

  • Who we are
  • What we do
  • The team
  • Contact
  • FAQ

DIVD Community

  • Contribute
  • Become a volunteer
  • Become a partner
  • Donate
  • Newsroom

Security

  • Code of Conduct
  • Code of Ethics
  • Why our work matters
  • Coordinated Vulnerability Disclosure
  • ANBI
  • CSIRT
  • Joris van de Vis
  • The Team >
  • Who we are >
  • Home >

Joris van de Vis

Researcher / Projectlead SAP research

SAP Security researcher

CSIRT cases

  • DIVD-2025-00019 - Unauthenticated file upload in Visual Composer (VCFRAMEWORK)
  • DIVD-2022-00010 - Auth bypass in SAP
  • DIVD-2022-00006 - SAProuter

Other links

  • LinkedIn
  • Twitter
Joris van de Vis

We aim to make the digital world safer by reporting vulnerabilities we find in digital systems to the people who can fix them. We have a global reach, but do it Dutch style: open, honest, collaborative, and for free.

Become a volunteer Become a partner
  • About

    • Who we are
    • What we do
    • The team
  • Security

    • Code of conduct
    • Security policy
    • ANBI
  • Stay up to date

    • Newsroom
    • Twitter
    • Github
    • Contact

Ethics at the base of everything we do

Since we handle sensitive data collected without informed consent, we've created this Code of Conduct to establish an ethical foundation for our work. This code can also be utilized by other researchers involved in what is currently known as responsible disclosure or coordinated vulnerability disclosure.

Code of conduct
Scanning from: AS50559 IPv4: 194.5.73.0/24 aka 194.5.73.0-194.5.73.255 - Our own local infrastructure
© 2026 DIVD. All rights reserved
Privacy