WordPress.org

Security Scorecard

Score

21F

Total CVEs

529

Patch Rate

2%

8 patched

Avg Response

-

days to patch

Critical Gaps

9

exploitable, no detection

Severity Breakdown

Critical6
High36
Medium483
Low2

Patch Status

Patched8 (2%)
Partial/Workaround0 (0%)
Unpatched521 (98%)

CVEs (621)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-11768WordPress Islamic Phrases Plugin VulnerabilityMEDIUM6.424dUnpatched
CVE-2025-11800CVE-2025-11800MEDIUM6.424dUnpatched
CVE-2025-11801AudioTube Plugin VulnerabilityMEDIUM6.424dUnpatched
CVE-2025-11802Bulma Shortcodes Plugin VulnerabilityMEDIUM6.424dUnpatched
CVE-2025-12660CVE-2025-12660MEDIUM6.424dUnpatched
CVE-2025-66077wpWax Legal Pages ExploitMEDIUM4.324dUnpatched
CVE-2025-12661Pollcaster Shortcode Plugin VulnerabilityMEDIUM6.424dUnpatched
CVE-2025-13135HotelRunner Booking Widget Plugin VulnerabilityMEDIUM6.424dUnpatched
CVE-2025-11803WPSite Shortcode Plugin VulnerabilityMEDIUM6.424dUnpatched
CVE-2025-11808Google Street View Plugin VulnerabilityMEDIUM6.424dUnpatched