WordPress.org

Security Scorecard

Score

21F

Total CVEs

526

Patch Rate

2%

8 patched

Avg Response

-

days to patch

Critical Gaps

9

exploitable, no detection

Severity Breakdown

Critical6
High35
Medium483
Low2

Patch Status

Patched8 (2%)
Partial/Workaround0 (0%)
Unpatched518 (98%)

CVEs (618)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-12505weDocs Plugin VulnerabilityMEDIUM5.48dUnpatched
CVE-2025-12720g-FFL Cockpit Plugin VulnerabilityMEDIUM5.38dUnpatched
CVE-2025-13358CodeConfig Accessibility Plugin VulnerabilityMEDIUM5.38dUnpatched
CVE-2025-13666Helloprint Plugin VulnerabilityMEDIUM5.38dUnpatched
CVE-2025-12091CVE-2025-12091MEDIUM4.38dUnpatched
CVE-2025-12574Listar Directory Listing & Classifieds Plugin VulnerabilityMEDIUM4.38dUnpatched
CVE-2025-13309CodeConfig Accessibility – Easy One-Click Accessibility Toolbar That Truly MattersMEDIUM4.38dUnpatched
CVE-2025-13629WP Landing Page Cross-Site Request ForgeryMEDIUM4.38dUnpatched
CVE-2025-12851My Auctions Allegro Plugin VulnerabilityHIGH8.1-Unknown
CVE-2025-13614WordPress Cool Tag Cloud Plugin VulnerabilityHIGH8.1-Unknown