WordPress.org

Security Scorecard

Score

34D

Total CVEs

895

Patch Rate

47%

418 patched

Avg Response

104d

days to patch

Critical Gaps

8

exploitable, no detection

Severity Breakdown

Critical39
High156
Medium698
Low2

Patch Status

Patched418 (47%)
Partial/Workaround4 (0%)
Unpatched473 (53%)

CVEs (1,107)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-12964-Medium6.424dUnpatched
CVE-2025-66057CVE-2025-66057Medium6.361dUnpatched
CVE-2025-12039-Medium5.324dUnpatched
CVE-2025-10054-Medium5.3-Patched
CVE-2025-11973-Medium4.924dUnpatched
CVE-2025-12169-Medium4.3-Patched
CVE-2025-13142-Medium4.324dUnpatched
CVE-2025-66106Essential Plugin Featured Post Creative VulnerabilityMedium4.361dUnpatched
CVE-2025-12502-Medium6.825dPatched
CVE-2025-5092-Medium6.425dPatched