What is the Wordfence CNA?
Wordfence is a CVE Numbering Authority (CNA) — an organization authorized to assign CVE IDs to vulnerabilities in its scope. It has published 8,652 CVE records since 2021.
How many CVEs has Wordfence published?
Wordfence has published 8,652 CVE records, including 7,232 in the last two years.
What is Wordfence's CVE data quality grade?
RadicalNotion.AI grades Wordfence's CVE data quality as A, with an overall completeness score of 91.8%. This reflects how consistently its CVE records include vendor (99.6%), product (100%), CVSS (99.9%), and CWE (67.8%) information.
What products does Wordfence publish CVEs for?
Wordfence most frequently publishes CVEs for Royal Addons for Elementor – Addons and Templates Kit for Elementor, Essential Addons for Elementor – Popular Elementor Templates & Widgets, royal elementor addons, essential addons for elementor, LearnPress – WordPress LMS Plugin for Create and Sell Online Courses.
Which vendors does Wordfence cover?
Wordfence publishes CVEs across 3,779 distinct vendors, most often wpdevteam, smub, StellarWP, wpdeveloper, themeisle.
Is Wordfence actively publishing CVEs?
Wordfence is currently active, based on 7,232 CVEs in the last two years.
What is the average severity of Wordfence's CVEs?
The average CVSS base score across Wordfence's scored CVEs is 6.4.
How many critical CVEs has Wordfence published?
Wordfence has published 629 critical-severity CVEs and 1,900 high-severity CVEs.
Are any of Wordfence's CVEs in CISA's Known Exploited Vulnerabilities catalog?
No. None of Wordfence's CVEs are currently listed in CISA's Known Exploited Vulnerabilities (KEV) catalog.
What are the most common weakness types in Wordfence's CVEs?
Wordfence's CVEs most often map to these CWE weakness types: CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')), CWE-862 (Missing Authorization), CWE-352 (Cross-Site Request Forgery (CSRF)), CWE-89 (Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')).
How does Wordfence rank among CNAs?
By total CVE volume, Wordfence ranks #8 of 370 CNAs, and it reports more complete CVE records than 38% of all CNAs.