WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in WP STAGING – WordPress Backups, Restore, Migration & Clone

WordPress backup plugin: backups, restore & migration in minutes. Clone or duplicate your site, test updates on a staging copy. 100% unit-tested.

8Reported vulnerabilities
9.1Highest CVSS score
4.10.0Latest version
100,000+Active installs

What to do now

Update WP STAGING – WordPress Backups, Restore, Migration & Clone to 5.6.1 or later. 8 of these have a fixed version available. Updating resolves them.

Plugin last updated: August 10, 2026 / Tested up to WordPress: 7.0.4 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2024-4469 High 7.5 0.6% Before 3.5.0 3.5.0 May 31, 2024
CVE-2023-7204 High 7.5 0.6% Before 3.2.0 3.2.0 January 29, 2024
CVE-2023-6113 High 7.5 0.8% Before 3.1.3 3.1.3 January 1, 2024
CVE-2024-3412 Critical 9.1 0.8% 0 to 3.4.3 (inclusive) 3.5.0 May 29, 2024
CVE-2024-5551 High 8.8 0.3% Before 5.6.1 5.6.1 June 14, 2024
CVE-2024-2309 Medium 4.8 0.4% Before 3.4.0 3.4.0 April 17, 2024
CVE-2022-2737 Medium 4.8 0.6% Before 2.9.18 2.9.18 September 16, 2022
CVE-2024-3682 Medium 5.3 0.6% 0 to 3.4.3 (inclusive)
0 to 5.4.3 (inclusive)
3.5.0 April 26, 2024

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.