Automattic

Security Scorecard

Score

39F

Total CVEs

135

Patch Rate

5%

7 patched

Avg Response

-

days to patch

Critical Gaps

1

exploitable, no detection

Severity Breakdown

Critical1
High10
Medium124
Low0

Patch Status

Patched7 (5%)
Partial/Workaround0 (0%)
Unpatched128 (95%)

CVEs (157)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-12667GitHub Gist Shortcode Plugin VulnerabilityMEDIUM6.434dUnpatched
CVE-2025-12020Double the Donation VulnerabilityMEDIUM4.934dUnpatched
CVE-2025-11997Document Pro Elementor – Documentation & Knowledge Base Plugin VulnerabilityMEDIUM5.334dUnpatched
CVE-2025-12538Fleet Manager Plugin VulnerabilityMEDIUM4.434dUnpatched
CVE-2025-11894Shelf Planner Plugin VulnerabilityMEDIUM5.334dUnpatched
CVE-2025-11822WP Bootstrap Tabs VulnerabilityMEDIUM6.434dUnpatched
CVE-2025-12125CVE-2025-12125MEDIUM4.438dUnpatched
CVE-2025-12498EventPrime Events Calendar Booking Tickets Plugin VulnerabilityMEDIUM4.338dUnpatched
CVE-2025-49909Penci Bookmark & Follow Cross-site ScriptingMEDIUM6.140dUnpatched
CVE-2025-49905Range Slider Addon for Gravity Forms Cross-site Scripting VulnerabilityMEDIUM6.140dUnpatched