Craft CMS

Security Scorecard

Score

100A

Total CVEs

5

Patch Rate

100%

5 patched

Avg Response

-

days to patch

Critical Gaps

0

exploitable, no detection

Severity Breakdown

Critical1
High2
Medium2
Low0

Patch Status

Patched5 (100%)
Partial/Workaround0 (0%)
Unpatched0 (0%)

CVEs (5)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-68538Craft Coffee Shop Cafe Restaurant WordPress Theme Cross-site Scripting VulnerabilityHigh7.1-Patched
CVE-2025-68456Craft CMS Database Backup VulnerabilityCritical9.1-Patched
CVE-2025-68454Craft CMS Twig SSTI VulnerabilityHigh8.8-Patched
CVE-2025-68436Craft CMS Image Exposure VulnerabilityMedium6.5-Patched
CVE-2025-68437Craft CMS SSRF VulnerabilityMedium6.8-Patched