← Back to Vendors

Wordpress.Org

Security Scorecard

Score

29 C

Based on 322,630 CVEs processed. Coverage: 99.5% CRITICAL, 165.6% HIGH, 185.4% MEDIUM.

Total CVEs

540

Avg Response

43 days

Patch Rate

20%

Critical Gaps

9

Severity Breakdown

Critical9
High40
Medium489
Low2

Patch Status

Patched106 (20%)
Partial/Workaround0 (0%)
Not Available434 (80%)

Recent CVEs

CVE ID Title Severity Score Days Patch
CVE-2025-11767 WordPress Tips Shortcode Plugin Vulnerab... MEDIUM 6.4 24d Not Available
CVE-2025-11768 WordPress Islamic Phrases Plugin Vulnera... MEDIUM 6.4 24d Not Available
CVE-2025-11800 XSS... MEDIUM 6.4 24d Not Available
CVE-2025-11801 AudioTube Plugin Vulnerability... MEDIUM 6.4 24d Not Available
CVE-2025-11802 Bulma Shortcodes Plugin Vulnerability... MEDIUM 6.4 24d Not Available
CVE-2025-12660 Padlet Shortcode XSS... MEDIUM 6.4 24d Not Available
CVE-2025-66077 wpWax Legal Pages Exploit... MEDIUM 4.3 24d Available
CVE-2025-12661 Pollcaster Shortcode Plugin Vulnerabilit... MEDIUM 6.4 24d Not Available
CVE-2025-13135 HotelRunner Booking Widget Plugin Vulner... MEDIUM 6.4 24d Not Available
CVE-2025-11803 WPSite Shortcode Plugin Vulnerability... MEDIUM 6.4 24d Not Available