Automattic (WordPress)

Security Scorecard

Score

71C

Total CVEs

78

Patch Rate

51%

40 patched

Avg Response

-

days to patch

Critical Gaps

0

exploitable, no detection

Severity Breakdown

Critical2
High14
Medium62
Low0

Patch Status

Patched40 (51%)
Partial/Workaround0 (0%)
Unpatched38 (49%)

CVEs (100)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-12411-High7.126dUnpatched
CVE-2025-8605-Medium6.427dUnpatched
CVE-2025-12372-Medium4.327dUnpatched
CVE-2025-64274WPKoi Template VulnerabilityMedium4.369dUnpatched
CVE-2025-64380Booster for WooCommerce XSS VulnerabilityMedium6.569dUnpatched
CVE-2025-12665-Medium4.334dUnpatched
CVE-2025-12631-Medium4.434dUnpatched
CVE-2025-11859-Medium6.435dUnpatched
CVE-2025-12167-Medium4.338dUnpatched
CVE-2025-12520-Medium4.039dUnpatched