Known vulnerabilities in Post Duplicator
Creates functionality to duplicate any and all post types, including taxonomies & custom fields. Perfect for developers and content creators.
10Reported vulnerabilities
7.5Highest CVSS score
3.0.15Latest version
200,000+Active installs
What to do now
Update Post Duplicator to 3.0.12 or later.
10 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2026-10749 | High | 0.5% | Before 3.0.15 | 3.0.15 |
June 25, 2026 |
| CVE-2026-39474 | High | 0.4% | 3.0.10 and earlier | 3.0.11 |
April 13, 2026 |
| CVE-2021-33852 | Medium | 0.6% | Before 2.24 | 2.24 |
December 2, 2021 |
| CVE-2016-15027 | Medium | 0.6% | 2.18 to 2.18 (inclusive) | 2.17 |
February 20, 2023 |
| CVE-2026-4244 | Medium | 0.2% | 0 to 3.0.11 (inclusive) | 3.0.12 |
August 22, 2026 |
| CVE-2026-4245 | Medium | 0.3% | 0 to 3.0.11 (inclusive) | 3.0.12 |
August 22, 2026 |
| CVE-2026-2301 | Medium | 0.2% | 0 to 3.0.8 (inclusive) | 3.0.9 |
February 25, 2026 |
| CVE-2025-24736 | Medium | 0.3% | 2.35 and earlier | 2.36 |
January 24, 2025 |
| CVE-2024-12472 | Medium | 0.3% | Before 2.37 | 2.37 |
January 11, 2025 |
| CVE-2023-49835 | Medium | 0.4% | 2.31 and earlier | 2.32 |
December 5, 2023 |