Automattic

Security Scorecard

Score

39F

Total CVEs

135

Patch Rate

5%

7 patched

Avg Response

-

days to patch

Critical Gaps

1

exploitable, no detection

Severity Breakdown

Critical1
High10
Medium124
Low0

Patch Status

Patched7 (5%)
Partial/Workaround0 (0%)
Unpatched128 (95%)

CVEs (157)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-11254CSV Injection in Contest Gallery – Upload, Vote & Sell with PayPal and Stripe plugin for WordPressMEDIUM4.370dUnpatched
CVE-2025-10124Booking Manager WordPress Plugin VulnerabilityMEDIUM4.571dUnpatched
CVE-2025-11166WP Go Maps CSRFMEDIUM5.472dUnpatched
CVE-2025-9703Ultimate Addons for Elementor VulnerabilityMEDIUM4.371dUnpatched
CVE-2025-10383Contest Gallery – Upload, Vote & Sell with PayPal and Stripe plugin vulnerabilityMEDIUM6.477dUnpatched
CVE-2025-9333Smart Docs VulnerabilityMEDIUM5.575dUnpatched
CVE-2025-9194Constructor Theme VulnerabilityMEDIUM4.375dUnpatched
CVE-2025-9077Ultra Addons Lite for Elementor Plugin VulnerabilityMEDIUM6.475dUnpatched
CVE-2025-7825Schema Plugin For Divi, Gutenberg & Shortcodes VulnerabilityMEDIUM6.378dUnpatched
CVE-2025-8669Customify Theme VulnerabilityMEDIUM4.378dUnpatched