WordPress.org

Security Scorecard

Score

21F

Total CVEs

526

Patch Rate

2%

8 patched

Avg Response

-

days to patch

Critical Gaps

9

exploitable, no detection

Severity Breakdown

Critical6
High35
Medium483
Low2

Patch Status

Patched8 (2%)
Partial/Workaround0 (0%)
Unpatched518 (98%)

CVEs (618)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-67912Stars Testimonials Cross-site Scripting VulnerabilityMEDIUM6.50dUnpatched
CVE-2025-13891Modula Gallery Photo Grid & Video Gallery Plugin VulnerabilityMEDIUM6.52dUnpatched
CVE-2025-13839WordPress LJUsers Plugin VulnerabilityMEDIUM6.42dUnpatched
CVE-2025-13747NewStatPress Plugin VulnerabilityMEDIUM6.42dUnpatched
CVE-2025-13843VigLink SpotLight By ShortCode VulnerabilityMEDIUM6.42dUnpatched
CVE-2025-13846Easy Map Creator Plugin VulnerabilityMEDIUM6.42dUnpatched
CVE-2025-13850LS Google Map Router Plugin VulnerabilityMEDIUM6.42dUnpatched
CVE-2025-13884WordPress Hide Email Address Plugin VulnerabilityMEDIUM6.42dUnpatched
CVE-2025-13885Zenost Shortcodes VulnerabilityMEDIUM6.42dUnpatched
CVE-2025-13889Simple Nivo Slider Cross-Site Scripting VulnerabilityMEDIUM6.42dUnpatched