Automattic

Security Scorecard

Score

68C

Total CVEs

221

Patch Rate

49%

108 patched

Avg Response

40d

days to patch

Critical Gaps

0

exploitable, no detection

Severity Breakdown

Critical10
High30
Medium181
Low0

Patch Status

Patched108 (49%)
Partial/Workaround1 (0%)
Unpatched112 (51%)

CVEs (273)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-11997-Medium5.334dUnpatched
CVE-2025-12538-Medium4.434dUnpatched
CVE-2025-11894-Medium5.334dUnpatched
CVE-2025-11822-Medium6.434dUnpatched
CVE-2025-12125-Medium4.438dUnpatched
CVE-2025-12498-Medium4.338dUnpatched
CVE-2025-11271-Medium5.340dUnpatched
CVE-2025-10691-Medium4.340dUnpatched
CVE-2025-48330PHP Remote File Inclusion Vulnerability in Gravity FormsCritical9.876dUnpatched
CVE-2025-49905Range Slider Addon for Gravity Forms Cross-site Scripting VulnerabilityMedium6.176dUnpatched