WordPress.org

Security Scorecard

Score

21F

Total CVEs

527

Patch Rate

2%

8 patched

Avg Response

-

days to patch

Critical Gaps

9

exploitable, no detection

Severity Breakdown

Critical6
High36
Medium483
Low2

Patch Status

Patched8 (2%)
Partial/Workaround0 (0%)
Unpatched519 (98%)

CVEs (619)

CVE IDTitleSeverityScoreDaysPatch
CVE-2024-10124Vayu Blocks Gutenberg Block VulnerabilityCRITICAL9.8367dUnpatched
CVE-2016-15040Kento Post View Counter SQL InjectionCRITICAL9.8433dUnpatched
CVE-2017-20192Formidable Form Builder Plugin VulnerabilityHIGH8.3433dUnpatched
CVE-2019-25216Rich Review Plugin VulnerabilityHIGH7.2433dUnpatched
CVE-2024-43918WBW Product Table PRO SQL InjectionCRITICAL10.0481dUnpatched
CVE-2024-6028Quiz Maker SQL InjectionCRITICAL9.8-Patched
CVE-2024-3605WP Hotel Booking Plugin SQL InjectionCRITICAL10.0551dUnpatched
CVE-2025-13740Lightweight Accordion VulnerabilityN/A-0dUnpatched
CVE-2025-12684URL Shortify VulnerabilityN/A-0dUnpatched
CVE-2025-13355URL Shortify VulnerabilityN/A-0dUnpatched