WordPress.org
Security Scorecard
Score
21F
Total CVEs
527
Patch Rate
2%
8 patched
Avg Response
-
days to patch
Critical Gaps
9
exploitable, no detection
Severity Breakdown
Critical6
High36
Medium483
Low2
Patch Status
Patched8 (2%)
Partial/Workaround0 (0%)
Unpatched519 (98%)
CVEs (619)
| CVE ID | Title | Severity | Score | Days | Patch |
|---|---|---|---|---|---|
| CVE-2025-13623 | Twitscription Plugin Vulnerability | MEDIUM | 6.1 | 9d | Unpatched |
| CVE-2025-13625 | WP-SOS-Donate Plugin Vulnerability | MEDIUM | 6.1 | 9d | Unpatched |
| CVE-2025-13515 | Nouri.sh Newsletter Plugin Vulnerability | MEDIUM | 6.1 | 9d | Unpatched |
| CVE-2025-13006 | CVE-2025-13006 | MEDIUM | 5.3 | 9d | Unpatched |
| CVE-2025-13494 | SSP Debug Plugin Vulnerability | MEDIUM | 5.3 | 9d | Unpatched |
| CVE-2025-12876 | Projectopia WordPress Plugin Vulnerability | MEDIUM | 5.3 | 9d | Unpatched |
| CVE-2025-12124 | FitVids Vulnerability | MEDIUM | 4.4 | 9d | Unpatched |
| CVE-2025-12186 | Weekly Planner Plugin Vulnerability | MEDIUM | 4.4 | 9d | Unpatched |
| CVE-2025-13682 | Trail Manager Plugin Vulnerability | MEDIUM | 4.4 | 9d | Unpatched |
| CVE-2025-13362 | Norby AI Plugin Vulnerability | MEDIUM | 4.3 | 9d | Unpatched |