WordPress.org

Security Scorecard

Score

29C

Total CVEs

540

Patch Rate

20%

106 patched

Avg Response

43d

days to patch

Critical Gaps

9

exploitable, no detection

Severity Breakdown

Critical9
High40
Medium489
Low2

Patch Status

Patched106 (20%)
Partial/Workaround0 (0%)
Unpatched434 (80%)

CVEs (632)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-12088Meta Display Block Plugin VulnerabilityMEDIUM6.427dUnpatched
CVE-2025-12078ArtiBot Reflected XSSMEDIUM6.127dUnpatched
CVE-2025-12404Like-it Plugin VulnerabilityMEDIUM6.127dUnpatched
CVE-2025-12079WP Twitter Auto Publish Plugin VulnerabilityMEDIUM6.127dUnpatched
CVE-2025-12545Pixel Manager WooCommerce Track Conversions and Analytics Plugin VulnerabilityMEDIUM5.327dUnpatched
CVE-2025-12392TripleA Cryptocurrency Payment Gateway VulnerabilityMEDIUM5.327dUnpatched
CVE-2025-12639wModes Catalog Mode, Product Pricing, Enquiry Forms & Promotions Plugin VulnerabilityMEDIUM4.327dUnpatched
CVE-2025-11734CVE-2025-11734MEDIUM5.427dUnpatched
CVE-2025-12173WP Admin Microblog Plugin VulnerabilityMEDIUM4.327dUnpatched
CVE-2025-12827CVE-2025-12827MEDIUM4.327dUnpatched