WordPress.org

Security Scorecard

Score

34D

Total CVEs

895

Patch Rate

47%

418 patched

Avg Response

104d

days to patch

Critical Gaps

8

exploitable, no detection

Severity Breakdown

Critical39
High156
Medium698
Low2

Patch Status

Patched418 (47%)
Partial/Workaround4 (0%)
Unpatched473 (53%)

CVEs (1,107)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-10646-Medium4.320dUnpatched
CVE-2025-13385-Medium4.920dUnpatched
CVE-2025-12587-Medium4.320dUnpatched
CVE-2025-12634-Medium4.320dUnpatched
CVE-2025-13558Blog2Social VulnerabilityMedium5.452dUnpatched
CVE-2025-12628-Medium6.321dUnpatched
CVE-2025-12800-Medium6.422dUnpatched
CVE-2025-13526-High7.521dUnpatched
CVE-2025-11186-Medium6.423dUnpatched
CVE-2025-12877-Medium5.3-Patched