WordPress.org

Security Scorecard

Score

21F

Total CVEs

527

Patch Rate

2%

8 patched

Avg Response

-

days to patch

Critical Gaps

9

exploitable, no detection

Severity Breakdown

Critical6
High36
Medium483
Low2

Patch Status

Patched8 (2%)
Partial/Workaround0 (0%)
Unpatched519 (98%)

CVEs (619)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-9073SQL Injection in All in One Minifier pluginHIGH7.597dUnpatched
CVE-2025-9034Wp Edit Password Protected VulnerabilityMEDIUM6.197dUnpatched
CVE-2025-9979Maspik Plugin VulnerabilityMEDIUM4.395dUnpatched
CVE-2025-9888Maspik – Ultimate Spam Protection Plugin VulnerabilityMEDIUM4.397dUnpatched
CVE-2025-9622WP Blast | SEO & Performance Booster Plugin VulnerabilityMEDIUM4.397dUnpatched
CVE-2025-9489WP-Members Plugin VulnerabilityMEDIUM5.098dUnpatched
CVE-2025-9111AI ChatBot VulnerabilityLOW3.599dUnpatched
CVE-2025-9058Mikado Core Plugin VulnerabilityMEDIUM6.499dUnpatched
CVE-2025-9853Optio Dentistry WordPress Plugin VulnerabilityMEDIUM6.4101dUnpatched
CVE-2025-9515Multi Step Form Plugin VulnerabilityHIGH7.2101dUnpatched