WordPress.org

Security Scorecard

Score

29C

Total CVEs

540

Patch Rate

20%

106 patched

Avg Response

43d

days to patch

Critical Gaps

9

exploitable, no detection

Severity Breakdown

Critical9
High40
Medium489
Low2

Patch Status

Patched106 (20%)
Partial/Workaround0 (0%)
Unpatched434 (80%)

CVEs (632)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-12471Hubbub Lite Social Sharing VulnerabilityMEDIUM6.140dUnpatched
CVE-2025-12360CVE-2025-12360MEDIUM4.340dUnpatched
CVE-2025-12563WordPress Social Media Auto Post & Scheduler Plugin VulnerabilityMEDIUM4.340dUnpatched
CVE-2025-12677KiotViet Sync Plugin VulnerabilityMEDIUM5.341dUnpatched
CVE-2025-12675KiotViet Sync Plugin VulnerabilityMEDIUM4.341dUnpatched
CVE-2025-11373Depicter Popup and Slider Builder VulnerabilityMEDIUM4.341dUnpatched
CVE-2025-11917WPeMatico RSS Feed Fetcher Plugin VulnerabilityMEDIUM6.441dUnpatched
CVE-2025-11745Ad Inserter VulnerabilityMEDIUM6.441dUnpatched
CVE-2025-12388B Carousel Block – Responsive Image and Content Carousel plugin vulnerabilityMEDIUM6.441dUnpatched
CVE-2025-12582WordPress Features Plugin VulnerabilityMEDIUM4.341dUnpatched