WordPress.org

Security Scorecard

Score

34D

Total CVEs

895

Patch Rate

47%

418 patched

Avg Response

104d

days to patch

Critical Gaps

8

exploitable, no detection

Severity Breakdown

Critical39
High156
Medium698
Low2

Patch Status

Patched418 (47%)
Partial/Workaround4 (0%)
Unpatched473 (53%)

CVEs (1,107)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-7711-Medium5.428dUnpatched
CVE-2025-8994-Medium6.530dUnpatched
CVE-2025-12182-Medium4.330dUnpatched
CVE-2025-12849-Medium5.330dUnpatched
CVE-2025-12847-Medium4.330dUnpatched
CVE-2025-10686-High7.230dPatched
CVE-2025-12377-Medium5.332dPatched
CVE-2025-64262Auto Prune Posts CSRF VulnerabilityMedium6.569dUnpatched
CVE-2025-11260-Medium5.332dUnpatched
CVE-2025-11769-Medium6.432dUnpatched