WordPress.org

Security Scorecard

Score

21F

Total CVEs

526

Patch Rate

2%

8 patched

Avg Response

-

days to patch

Critical Gaps

9

exploitable, no detection

Severity Breakdown

Critical6
High35
Medium483
Low2

Patch Status

Patched8 (2%)
Partial/Workaround0 (0%)
Unpatched518 (98%)

CVEs (618)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-64639WP Compress WP Compress MainWP ExploitN/A-0dUnpatched
CVE-2025-67950SQL Injection in All In One SEO PackN/A-0dUnpatched
CVE-2025-67962AIOSEO Plugin Team Broken Link Checker SQL InjectionN/A-0dUnpatched
CVE-2025-13861WordPress Forms Plugin VulnerabilityN/A-0dUnpatched
CVE-2025-64247Edmon.parker Read More & Accordion Plugin VulnerabilityN/A-1dUnpatched
CVE-2025-64241WP Coupons and Deals VulnerabilityN/A-1dUnpatched
CVE-2025-13217WordPress Ultimate Member Plugin VulnerabilityN/A-0dUnpatched
CVE-2025-12885WordPress Embed Any Document Plugin VulnerabilityN/A-0dUnpatched
CVE-2025-12976WordPress Events Manager Plugin VulnerabilityN/A-0dUnpatched
CVE-2025-13498Download Manager Plugin VulnerabilityN/A-0dUnpatched