WordPress.org

Security Scorecard

Score

21F

Total CVEs

527

Patch Rate

2%

8 patched

Avg Response

-

days to patch

Critical Gaps

9

exploitable, no detection

Severity Breakdown

Critical6
High36
Medium483
Low2

Patch Status

Patched8 (2%)
Partial/Workaround0 (0%)
Unpatched519 (98%)

CVEs (619)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-9216StoreEngine VulnerabilityHIGH8.891dUnpatched
CVE-2025-8999Sydney Theme VulnerabilityMEDIUM5.391dUnpatched
CVE-2025-10042Quiz Maker SQL InjectionMEDIUM5.993dUnpatched
CVE-2025-9880Side Slide Responsive Menu Plugin VulnerabilityMEDIUM6.195dUnpatched
CVE-2025-9807WordPress Plugin SQL InjectionHIGH7.595dUnpatched
CVE-2025-9860Mixtape Plugin VulnerabilityMEDIUM6.496dUnpatched
CVE-2025-9855BibliPlug VulnerabilityMEDIUM6.496dUnpatched
CVE-2025-9776WordPress Media Library by Category Plugin VulnerabilityMEDIUM6.596dUnpatched
CVE-2025-9693User Meta – User Profile Builder and User management plugin vulnerabilityHIGH8.096dUnpatched
CVE-2025-9635WordPress Analytics Unbounce Plugin Bounce Rate ReductionMEDIUM4.396dUnpatched