Automattic

Security Scorecard

Score

39F

Total CVEs

135

Patch Rate

5%

7 patched

Avg Response

-

days to patch

Critical Gaps

1

exploitable, no detection

Severity Breakdown

Critical1
High10
Medium124
Low0

Patch Status

Patched7 (5%)
Partial/Workaround0 (0%)
Unpatched128 (95%)

CVEs (157)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-12775WP Dropzone Plugin VulnerabilityHIGH8.826dUnpatched
CVE-2025-12406Project Honey Pot Spam Trap VulnerabilityMEDIUM6.127dUnpatched
CVE-2025-12524CVE-2025-12524MEDIUM5.427dUnpatched
CVE-2025-12391BuddyPress Plugin VulnerabilityMEDIUM5.327dUnpatched
CVE-2025-13196Element Pack Addons VulnerabilityMEDIUM5.427dUnpatched
CVE-2025-12961Download Panel Plugin VulnerabilityMEDIUM4.327dUnpatched
CVE-2025-64384JetFormBuilder BypassMEDIUM6.332dUnpatched
CVE-2025-64269WooPDF Invoice Builder BypassMEDIUM4.332dUnpatched
CVE-2025-12087Woocommerce Wishlist Save for Later Plugin VulnerabilityMEDIUM4.333dUnpatched
CVE-2025-11237Make Email Customizer VulnerabilityMEDIUM5.334dUnpatched