Automattic

Security Scorecard

Score

39F

Total CVEs

135

Patch Rate

5%

7 patched

Avg Response

-

days to patch

Critical Gaps

1

exploitable, no detection

Severity Breakdown

Critical1
High10
Medium124
Low0

Patch Status

Patched7 (5%)
Partial/Workaround0 (0%)
Unpatched128 (95%)

CVEs (157)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-8666Testimonial Carousel For Elementor Plugin VulnerabilityMEDIUM6.455dUnpatched
CVE-2025-11564Tutor LMS Plugin VulnerabilityMEDIUM5.355dUnpatched
CVE-2025-10637InstaGallery Plugin VulnerabilityMEDIUM5.355dUnpatched
CVE-2025-10737Genesis Framework Theme VulnerabilityMEDIUM6.455dUnpatched
CVE-2025-11257Hubspot Blog Import Plugin VulnerabilityMEDIUM4.356dUnpatched
CVE-2025-12136Real Cookie Banner SSRF VulnerabilityMEDIUM6.856dUnpatched
CVE-2025-8427Beaver Builder Plugin VulnerabilityMEDIUM6.457dUnpatched
CVE-2025-49939JetElements For Elementor XSSMEDIUM6.558dUnpatched
CVE-2025-49932CrocoBlock JetBlog XSSMEDIUM6.558dUnpatched
CVE-2025-11819WP Thumbnail VulnerabilityMEDIUM6.458dUnpatched