WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in WP Multisite Content Copier/Updater

Copy/Update posts and pages from one site (blog) to the other sites (blogs) in your WordPress Multisite Network.

3Reported vulnerabilities
6.1Highest CVSS score
2.0.2Latest version
800+Active installs

What to do now

Update WP Multisite Content Copier/Updater to 2.0.1 or later. 3 of these have a fixed version available. Updating resolves them.

Plugin last updated: December 12, 2025 / Tested up to WordPress: 6.9.7 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2021-25039 Medium 6.1 0.8% Before 2.1.0 2.1.0 March 7, 2022
CVE-2024-38673 Medium 6.1 0.4% 2.0.0 and earlier 2.0.1 July 10, 2024
WF-426021d3-e302-4c2a-8d5c-f2a2fc20e45b Medium 6.1 1.4.0 and earlier 1.5.0 June 17, 2022

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.