Automattic (WordPress)
Security Scorecard
Score
35F
Total CVEs
38
Patch Rate
0%
0 patched
Avg Response
-
days to patch
Critical Gaps
1
exploitable, no detection
Severity Breakdown
Critical1
High4
Medium33
Low0
Patch Status
Patched0 (0%)
Partial/Workaround0 (0%)
Unpatched38 (100%)
CVEs (45)
| CVE ID | Title | Severity | Score | Days | Patch |
|---|---|---|---|---|---|
| CVE-2025-11368 | LearnPress WordPress LMS Plugin Vulnerability | MEDIUM | 5.3 | 24d | Unpatched |
| CVE-2025-12427 | YITH WooCommerce Wishlist Plugin Vulnerability | MEDIUM | 5.3 | 26d | Unpatched |
| CVE-2025-12974 | Gravity Forms Plugin Vulnerability | HIGH | 8.1 | 26d | Unpatched |
| CVE-2025-4212 | WooCommerce Checkout Files Upload Vulnerability | HIGH | 7.2 | 26d | Unpatched |
| CVE-2025-12411 | Premmerce Wholesale Pricing for WooCommerce Plugin Vulnerability | HIGH | 7.1 | 26d | Unpatched |
| CVE-2025-8605 | Gutenify Vulnerability | MEDIUM | 6.4 | 27d | Unpatched |
| CVE-2025-12372 | Permalinks Cascade Plugin Vulnerability | MEDIUM | 4.3 | 27d | Unpatched |
| CVE-2025-64274 | WPKoi Templates for Elementor Vulnerability | MEDIUM | 4.3 | 32d | Unpatched |
| CVE-2025-12665 | Ninja Countdown Plugin Vulnerability | MEDIUM | 4.3 | 34d | Unpatched |
| CVE-2025-12631 | Squirrels Auto Inventory Plugin Vulnerability | MEDIUM | 4.4 | 34d | Unpatched |