Automattic

Security Scorecard

Score

68C

Total CVEs

221

Patch Rate

49%

108 patched

Avg Response

40d

days to patch

Critical Gaps

0

exploitable, no detection

Severity Breakdown

Critical10
High30
Medium181
Low0

Patch Status

Patched108 (49%)
Partial/Workaround1 (0%)
Unpatched112 (51%)

CVEs (273)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-14434Ultimate Post Kit Addons VulnerabilityN/A-2dUnpatched
CVE-2023-52212WP Job Manager XSSN/A--Patched
CVE-2025-14163Elementor Premium Addons Cross-Site Request ForgeryN/A--Patched
CVE-2025-13746ForumWP VulnerabilityN/A--Patched
CVE-2025-14120Wordpress Plugin XSSN/A--Patched
CVE-2025-14441Popupkit Plugin VulnerabilityN/A--Patched
CVE-2025-30631Woocommerce Sales Funnel Builder Plugin XSSN/A--Patched
CVE-2025-11877WordPress Plugin XSSN/A--Patched
CVE-2025-12648WP-Members Plugin VulnerabilityN/A--Patched
CVE-2025-13520MTCaptcha WordPress Plugin XSSN/A--Patched