WordPress.org

Security Scorecard

Score

21F

Total CVEs

535

Patch Rate

2%

8 patched

Avg Response

-

days to patch

Critical Gaps

9

exploitable, no detection

Severity Breakdown

Critical6
High36
Medium483
Low2

Patch Status

Patched8 (1%)
Partial/Workaround0 (0%)
Unpatched527 (99%)

CVEs (627)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-9952Trinity Audio TTS Plugin VulnerabilityMEDIUM6.171dUnpatched
CVE-2025-9030Majestic Before After Image VulnerabilityMEDIUM5.474dUnpatched
CVE-2025-8726WP Photo Album Plus Cross-Site Scripting VulnerabilityMEDIUM5.477dUnpatched
CVE-2025-11228GiveWP Donation Plugin VulnerabilityMEDIUM5.3-Patched
CVE-2025-9945Optimize More! CSS Plugin VulnerabilityMEDIUM4.372dUnpatched
CVE-2025-9895Notification Bar Plugin VulnerabilityMEDIUM4.374dUnpatched
CVE-2025-9889ContentMX Content Publisher Plugin VulnerabilityMEDIUM4.374dUnpatched
CVE-2025-9885MPWizard Payment Link Plugin VulnerabilityMEDIUM4.374dUnpatched
CVE-2025-9884Mobile Site Redirect VulnerabilityMEDIUM6.174dUnpatched
CVE-2025-9876Ird Slider Plugin VulnerabilityMEDIUM6.474dUnpatched