WordPress Core Security Scores

Live status and CVSS risk scores pulled via WP Vulnerability API.

🔍 Scan a Website

WP Version Status Known Vulns Max CVSS Security Score

🛡️ About the WordPress Core Security & Vulnerability Intelligence Dashboard

Welcome to the ultimate WordPress Core Security Matrix. This system provides real-time security posture evaluation, CVSS severity metrics, and historical vulnerability tracking for WordPress 6.x and 7.x core branches, queried directly from the open-source WP Vulnerability API.

  • Instant Cached Performance: Precompiled with a 24-hour master cache layer to ensure zero lag or redundant API rate limits for site visitors.
  • Live Website Vulnerability Scanner: Enter any target URL to instantly evaluate its core release, uncover risk exposure, and get actionable recommendations.
  • Intelligent Asset Fallbacks: Employs multi-tier heuristics (including asset version matching and frequency analysis) to accurately identify core versions even when generator metadata tags are hidden.
  • Risk Separation: Cleanly differentiates between structural/aging risks (backported versions with 0 known CVEs marked as Warnings) and active unpatched threat vectors (marked as Critical Red).