WordPress

Security Scorecard

Score

53F

Total CVEs

39

Patch Rate

44%

17 patched

Avg Response

220d

days to patch

Critical Gaps

0

exploitable, no detection

Severity Breakdown

Critical2
High10
Medium27
Low0

Patch Status

Patched17 (44%)
Partial/Workaround1 (3%)
Unpatched21 (54%)

CVEs (46)

CVE IDTitleSeverityScoreDaysPatch
CVE-2025-12620-Medium4.932dUnpatched
CVE-2025-12526-Medium4.334dUnpatched
CVE-2025-62045PHP Remote File Inclusion in TheGem Theme Elements (for WPBakery)High8.176dUnpatched
CVE-2025-12369-Medium6.442dUnpatched
CVE-2025-11922-Medium6.445dUnpatched
CVE-2025-64204SmartMag XSS VulnerabilityMedium6.584dUnpatched
CVE-2025-62928Joby Joseph SEO Meta Description Updater VulnerabilityHigh8.186dUnpatched
CVE-2025-11255-Medium4.355dUnpatched
CVE-2025-58961CF7 Auto Responder Addon XSS VulnerabilityHigh7.190dUnpatched
CVE-2025-58967PHP Remote File Inclusion Vulnerability in ThemeMove BusinextHigh8.290dUnpatched