WordPress.org

Security Scorecard

Score

21F

Total CVEs

535

Patch Rate

2%

8 patched

Avg Response

-

days to patch

Critical Gaps

9

exploitable, no detection

Severity Breakdown

Critical6
High36
Medium483
Low2

Patch Status

Patched8 (1%)
Partial/Workaround0 (0%)
Unpatched527 (99%)

CVEs (627)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-10175WP Links Page Plugin SQL InjectionMEDIUM6.570dUnpatched
CVE-2025-10167WooCommerce Stock History & Reports Manager VulnerabilityMEDIUM6.470dUnpatched
CVE-2025-10185Nex-Forms – Ultimate Forms Plugin SQL Injection VulnerabilityMEDIUM4.970dUnpatched
CVE-2025-11167CM Registration – Tailored Tool VulnerabilityMEDIUM4.770dUnpatched
CVE-2025-11197Draft List Plugin VulnerabilityMEDIUM6.470dUnpatched
CVE-2025-10249Slider Revolution Plugin VulnerabilityMEDIUM6.572dUnpatched
CVE-2025-11171Chartify – WordPress Chart Plugin VulnerabilityMEDIUM5.373dUnpatched
CVE-2025-7400FIFU Plugin VulnerabilityMEDIUM6.474dUnpatched
CVE-2025-10645WP Reset Plugin VulnerabilityMEDIUM5.374dUnpatched
CVE-2025-9710Responsive Lightbox & Gallery WordPress Plugin VulnerabilityMEDIUM6.371dUnpatched