Automattic

Security Scorecard

Score

68C

Total CVEs

221

Patch Rate

49%

108 patched

Avg Response

40d

days to patch

Critical Gaps

0

exploitable, no detection

Severity Breakdown

Critical10
High30
Medium181
Low0

Patch Status

Patched108 (49%)
Partial/Workaround1 (0%)
Unpatched112 (51%)

CVEs (273)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-13961WordPress Plugin XSSMedium6.4-Patched
CVE-2025-13969WordPress Plugin XSSMedium6.4-Patched
CVE-2025-13972WatchTowerHQ Plugin XSSMedium4.9-Patched
CVE-2025-14467WP Job Portal Plugin XSSMedium4.4-Patched
CVE-2025-14158Coding Blocks Plugin VulnerabilityMedium4.321dUnpatched
CVE-2025-14160Calendly Plugin VulnerabilityMedium4.3-Patched
CVE-2025-12407WordPress Plugin XSSMedium4.3-Patched
CVE-2025-14293WP Job Portal Plugin XSSMedium6.5-Patched
CVE-2025-66531Salon Booking System CSRFHigh8.8-Patched
CVE-2025-67536ThimPress LearnPress XSSMedium6.5-Patched