WordPress Plugin Directory

Security Scorecard

Score

46C

Total CVEs

21

Patch Rate

24%

5 patched

Avg Response

58d

days to patch

Critical Gaps

1

exploitable, no detection

Severity Breakdown

Critical4
High7
Medium10
Low0

Patch Status

Patched5 (24%)
Partial/Workaround1 (5%)
Unpatched15 (71%)

CVEs (27)

CVE IDTitleSeverityScoreDaysPatch
CVE-2026-24521Kama Thumbnail Cross-Site Request ForgeryMedium4.3-Patched
CVE-2025-68009Codeless Slider Templates VulnerabilityMedium6.56dUnpatched
CVE-2025-68011GLS Shipping for WooCommerce XSS VulnerabilityHigh7.16dUnpatched
CVE-2025-22707PHP Remote File Inclusion Vulnerability in ThemeMove Moody tm-moodyCritical9.8-Patched
CVE-2025-67521PHP Remote File Inclusion VulnerabilityCritical9.8-Patched
CVE-2025-63065Media Library Assistant BypassMedium5.4-Patched
CVE-2025-62735User Spam Remover VulnerabilityMedium5.325dUnpatched
CVE-2025-13141-Medium6.424dUnpatched
CVE-2025-66098Camille V Travelers' Map XSSMedium6.561dUnpatched
CVE-2025-60242Anatoly Download Counter Path Traversal VulnerabilityHigh7.576dUnpatched