WordPress.org

Security Scorecard

Score

21F

Total CVEs

540

Patch Rate

2%

8 patched

Avg Response

-

days to patch

Critical Gaps

9

exploitable, no detection

Severity Breakdown

Critical9
High40
Medium489
Low2

Patch Status

Patched8 (1%)
Partial/Workaround0 (0%)
Unpatched532 (99%)

CVEs (632)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-11728Oceanpayment CreditCard Gateway Plugin VulnerabilityMEDIUM5.366dUnpatched
CVE-2025-10301FunKiTools Plugin VulnerabilityMEDIUM4.366dUnpatched
CVE-2025-10300TopBar Plugin VulnerabilityMEDIUM4.366dUnpatched
CVE-2025-10141Digiseller Plugin VulnerabilityMEDIUM6.466dUnpatched
CVE-2025-10135WP ViewSTL Plugin VulnerabilityMEDIUM6.466dUnpatched
CVE-2025-10140Quick Social Login VulnerabilityMEDIUM6.466dUnpatched
CVE-2025-10303WordPress Plugin VulnerabilityMEDIUM4.366dUnpatched
CVE-2025-10133URLYar URL Shortner Plugin VulnerabilityMEDIUM6.466dUnpatched
CVE-2025-10660WP Dashboard Chat Plugin VulnerabilityMEDIUM6.566dUnpatched
CVE-2025-10682TARIFFUXX SQL InjectionMEDIUM6.566dUnpatched