Skip to content
Founder-led WordPress incident response and care Request an assessment
3zerodigital Request a Website Assessment

Original calculations from synchronized vulnerability data

WordPress Security Research & Data

Multi-year trends, software comparisons, patch-status analysis, weakness patterns and disclosure timing—calculated by 3Zero Digital from approved Wordfence Intelligence snapshots.

Approved snapshot #1Source synchronized: 2026-08-02 09:41:47 UTC
Active production records38,293Current approved source population
Records with CVEs35,478Coverage, not a requirement for inclusion
Network attack vector38,272Based on synchronized CVSS vectors
No privileges required20,002CVSS prerequisite, not exploitation evidence

Five complete years

Recorded disclosure volume, 2021–2025

The flagship analysis compares complete calendar years so a partial current year does not distort the direction of the series.

Read the five-year study →
1,5142021
2,3962022
4,8922023
8,3172024
10,8312025

Reproducible by design

Research pages use approved data snapshots

Calculations are prepared after successful Production Feed synchronization and stored outside autoloaded options. Public pages never run full-dataset aggregation queries. Each report identifies its cutoff, calculation version and limitations.

Vulnerability data: Wordfence Intelligence. Analysis and practical guidance: 3Zero Digital. Record counts are not software-quality rankings and do not prove exploitation or infection.

Read the methodology