Automattic

Security Scorecard

Score

68C

Total CVEs

221

Patch Rate

49%

108 patched

Avg Response

40d

days to patch

Critical Gaps

0

exploitable, no detection

Severity Breakdown

Critical10
High30
Medium181
Low0

Patch Status

Patched108 (49%)
Partial/Workaround1 (0%)
Unpatched112 (51%)

CVEs (273)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-13527WordPress Plugin XSSN/A--Patched
CVE-2025-13841Smart App Banners Plugin XSSN/A--Patched
CVE-2025-14059EmailKit Plugin WordPress XSSN/A--Patched
CVE-2025-14144Mstoic Shortcodes Plugin XSSN/A--Patched
CVE-2025-14802LearnPress WordPress LMS Plugin VulnerabilityN/A-0dUnpatched
CVE-2025-69092WPDeveloper Essential Addons for Elementor XSSN/A-9dUnpatched
CVE-2025-14574WeDocs Plugin VulnerabilityN/A--Patched
CVE-2025-14718WordPress Plugin XSSN/A--Patched
CVE-2025-15019BIALTY - Bulk Image Alt Text with Yoast SEO + WooCommerce Plugin XSSN/A--Patched
CVE-2025-13628Tutor LMS Plugin VulnerabilityN/A--Patched