WordPress.org

Security Scorecard

Score

21F

Total CVEs

527

Patch Rate

2%

8 patched

Avg Response

-

days to patch

Critical Gaps

9

exploitable, no detection

Severity Breakdown

Critical6
High36
Medium483
Low2

Patch Status

Patched8 (2%)
Partial/Workaround0 (0%)
Unpatched519 (98%)

CVEs (619)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-13382WordPress Plugin VulnerabilityMEDIUM4.320dUnpatched
CVE-2025-12043Autochat Automatic Conversation Plugin VulnerabilityMEDIUM5.320dUnpatched
CVE-2025-12525Locker Content Plugin VulnerabilityMEDIUM5.320dUnpatched
CVE-2025-13386CVE-2025-13386MEDIUM5.320dUnpatched
CVE-2025-13389WooCommerce OrderConvo Plugin VulnerabilityMEDIUM5.320dUnpatched
CVE-2025-13404Duplicate Post Plugin VulnerabilityMEDIUM5.320dUnpatched
CVE-2025-13370WordPress Plugin VulnerabilityMEDIUM4.920dUnpatched
CVE-2025-10646Search Exclude Plugin VulnerabilityMEDIUM4.320dUnpatched
CVE-2025-13385Bookme Free Online Appointment Booking System SQL InjectionMEDIUM4.920dUnpatched
CVE-2025-12587Peer Publish Plugin VulnerabilityMEDIUM4.320dUnpatched