Automattic
Security Scorecard
Score
68C
Total CVEs
221
Patch Rate
49%
108 patched
Avg Response
40d
days to patch
Critical Gaps
0
exploitable, no detection
Severity Breakdown
Critical10
High30
Medium181
Low0
Patch Status
Patched108 (49%)
Partial/Workaround1 (0%)
Unpatched112 (51%)
CVEs (273)
| CVE ID | Title | Severity | Score | Days | Patch |
|---|---|---|---|---|---|
| CVE-2025-67540 | Wealcoder Animation Addons for Elementor Vulnerability | Medium | 6.5 | - | Patched |
| CVE-2025-67544 | Shopkeeper Extender XSS | Medium | 6.5 | - | Patched |
| CVE-2025-63033 | Elementor make-section-column-clickable-for-elementor XSS Vulnerability | Medium | 5.9 | - | Patched |
| CVE-2025-13642 | ProfilePress Shortcode Exploit | Medium | 5.4 | - | Patched |
| CVE-2025-67564 | Pixel Manager for WooCommerce XSS | Medium | 5.3 | - | Patched |
| CVE-2025-12966 | All-in-One Video Gallery Plugin Vulnerability | High | 8.8 | 26d | Unpatched |
| CVE-2025-13137 | WooMotiv Plugin XSS | Medium | 6.1 | - | Patched |
| CVE-2025-12574 | Listar Directory Listing & Classifieds WordPress Plugin XSS | Medium | 4.3 | - | Patched |
| CVE-2025-12417 | SurveyFunnel Vulnerability | Medium | 6.4 | - | Patched |
| CVE-2025-12124 | FitVids for WordPress XSS | Medium | 4.4 | - | Patched |