Automattic

Security Scorecard

Score

68C

Total CVEs

221

Patch Rate

49%

108 patched

Avg Response

40d

days to patch

Critical Gaps

0

exploitable, no detection

Severity Breakdown

Critical10
High30
Medium181
Low0

Patch Status

Patched108 (49%)
Partial/Workaround1 (0%)
Unpatched112 (51%)

CVEs (273)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-9057-Medium6.4103dUnpatched
CVE-2025-8944OceanWP Plugin XSSMedium4.3-Patched
CVE-2025-9260-Medium6.5105dUnpatched
CVE-2025-9499-Medium6.4108dUnpatched
CVE-2025-9500-Medium6.4108dUnpatched
CVE-2025-9344-Medium6.4-Patched
CVE-2025-6200GeoDirectory XSSMedium5.9-Patched
CVE-2025-2560Ninja Forms WordPress Plugin XSSMedium4.8-Patched
CVE-2025-2561Ninja Forms WordPress Plugin XSSMedium4.8-Patched
CVE-2024-6719Offload Videos WordPress Plugin VulnerabilityHigh8.1235dUnpatched