WordPress Easy Post Duplicator Plugin SQL Injection Vulnerability

Vulnerability

A SQL injection vulnerability has been identified in the WordPress Easy Post Duplicator plugin, affecting versions through 1.0.1. This vulnerability allows attackers to manipulate SQL queries, potentially leading to unauthorized database access or data manipulation.

Impact

Exploitation of this vulnerability allows for direct interaction with the database, which could include unauthorized data access, data modification, or in some cases, executing administrative operations on the database.

Remediation

Users are advised to remove or replace the Easy Post Duplicator plugin, as it is likely abandoned and will not receive further updates or fixes. Patchstack offers a virtual patch to mitigate this vulnerability by blocking attacks until an official fix is available.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
5.2
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.