Automattic

Security Scorecard

Score

39F

Total CVEs

135

Patch Rate

5%

7 patched

Avg Response

-

days to patch

Critical Gaps

1

exploitable, no detection

Severity Breakdown

Critical1
High10
Medium124
Low0

Patch Status

Patched7 (5%)
Partial/Workaround0 (0%)
Unpatched128 (95%)

CVEs (157)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-11536Elementor Pack Addons Blind Server-Side Request ForgeryMEDIUM5.060dUnpatched
CVE-2025-9890Theme Editor Cross-Site Request ForgeryHIGH8.859dUnpatched
CVE-2025-11926Related Posts Lite Plugin VulnerabilityMEDIUM4.462dUnpatched
CVE-2025-11519Optimole Plugin VulnerabilityMEDIUM4.362dUnpatched
CVE-2025-11703WP Go Maps Cache PoisoningMEDIUM5.362dUnpatched
CVE-2025-11372LearnPress WordPress LMS Plugin VulnerabilityMEDIUM6.562dUnpatched
CVE-2025-10700Ally Web Accessibility & Usability Plugin VulnerabilityMEDIUM4.365dUnpatched
CVE-2025-11160WPBakery Page Builder VulnerabilityMEDIUM6.466dUnpatched
CVE-2025-9698Plus Addons VulnerabilityMEDIUM6.864dUnpatched
CVE-2025-10375AccessiBe Plugin VulnerabilityMEDIUM4.370dUnpatched