Known vulnerabilities in SchedulePress – Auto Post & Publish, Auto Social Share, Schedule Posts with Editorial Calendar & Missed Schedule Post Publisher
Automate your WordPress content scheduling with a visual calendar, auto/manual schedulers, missed‑post handler, social sharing options & templates.
3Reported vulnerabilities
5.3Highest CVSS score
5.3.3Latest version
10,000+Active installs
What to do now
Update SchedulePress – Auto Post & Publish, Auto Social Share, Schedule Posts with Editorial Calendar & Missed Schedule Post Publisher to 5.1.4 or later.
3 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2024-6557 | Medium | 0.4% | 0 to 5.1.3 (inclusive) 0 to 5.1.3 (inclusive) |
5.1.4 |
July 16, 2024 |
| CVE-2024-32717 | Medium | 0.6% | 5.0.8 and earlier | 5.0.9 |
April 22, 2024 |
| WF-cd2c9b28-d5b5-4930-a441-f889ee2778cd | Medium | — | 5.0.4 and earlier | 5.0.5 |
November 28, 2023 |