CVE security advisories and vulnerability history for wordpress-develop by wordpress.
19
Total CVEs
Published
0
In CISA KEV
Exploited in the wild
4
Public exploits
With known exploit
6.5
Avg CVSS
2016–2024
Last updated
Overview
wordpress wordpress-develop has 19 published CVE records since 2016, of which 0 are in CISA's Known Exploited Vulnerabilities catalog and 4 have a known public exploit. The average CVSS base score across scored CVEs is 6.5.
This page aggregates every publicly disclosed vulnerability (CVE) affecting wordpress wordpress-develop, with a severity breakdown, the affected and patched versions, the most common weakness types, and the full CVE list.
Severity and exploitation
How the CVSS severity of wordpress wordpress-develop's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
Critical1
High7
Medium8
Low2
1 additional CVE has no CVSS severity score.
In CISA’s Known Exploited Vulnerabilities catalog
0
None of wordpress wordpress-develop's CVEs are currently listed in CISA's KEV catalog.
Public exploits
4
4 of wordpress wordpress-develop's CVEs have a known public exploit available.
Affected versions and CVEs
Browse every wordpress wordpress-develop version named in a CVE, then pick one to see only the CVEs that affect it.
Common questions about wordpress wordpress-develop vulnerabilities.
How many CVEs does wordpress wordpress-develop have?
wordpress wordpress-develop has 19 published CVE records since 2016.
How many wordpress wordpress-develop CVEs are in CISA KEV?
None of wordpress wordpress-develop's CVEs are currently listed in CISA's Known Exploited Vulnerabilities catalog.
Are there public exploits for wordpress wordpress-develop vulnerabilities?
Yes — 4 of wordpress wordpress-develop's CVEs have a known public exploit.
Which versions of wordpress wordpress-develop are affected?
73 distinct wordpress wordpress-develop versions are named across its CVEs. Use the version filter above to see the CVEs affecting a specific version.
What are the most common weakness types in wordpress wordpress-develop CVEs?
wordpress wordpress-develop's CVEs most often map to these CWE weakness types: CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')), CWE-200 (Exposure of Sensitive Information to an Unauthorized Actor), CWE-80 (Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)), CWE-89 (Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')).
How many critical wordpress wordpress-develop vulnerabilities are there?
wordpress wordpress-develop has 1 critical and 7 high-severity CVEs.
What is the average severity of wordpress wordpress-develop CVEs?
The average CVSS base score across wordpress wordpress-develop's scored CVEs is 6.5.