Automattic (WordPress)

Security Scorecard

Score

71C

Total CVEs

78

Patch Rate

51%

40 patched

Avg Response

-

days to patch

Critical Gaps

0

exploitable, no detection

Severity Breakdown

Critical2
High14
Medium62
Low0

Patch Status

Patched40 (51%)
Partial/Workaround0 (0%)
Unpatched38 (49%)

CVEs (100)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-14476-N/A-2dUnpatched
CVE-2025-14385-N/A-0dUnpatched
CVE-2025-14061-N/A-0dUnpatched
CVE-2025-14054-N/A-0dUnpatched
CVE-2026-0604FastDup VulnerabilityN/A--Patched
CVE-2025-15001WordPress Plugin XSSN/A--Patched
CVE-2025-13766MasterStudy LMS WordPress Plugin VulnerabilityN/A--Patched
CVE-2025-13493WordPress Plugin XSSN/A--Patched
CVE-2025-13847PhotoFade Plugin XSSN/A--Patched
CVE-2025-14110WP Js List Pages Shortcodes Plugin XSSN/A--Patched