GHSA-mf7v-v9w5-f74cLowCVSS 2.7

The Duplicate Post WordPress plugin before 1.5.6 does not check that a user may read the content...

Published
August 21, 2026
Last Modified
August 21, 2026

🔗 CVE IDs covered (1)

📋 Description

The Duplicate Post WordPress plugin before 1.5.6 does not check that a user may read the content of a post before duplicating it, allowing users with a delegated role to republish another user's password-protected post as publicly readable.

🔗 References (3)