CVE-2025-24652: WordPress WP Duplicate plugin <= 1.1.6 - Broken Access Control vulnerability
Missing Authorization vulnerability in revmakx WP Duplicate local-sync allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Duplicate: from n/a through <= 1.1.6.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-24652?
CVE-2025-24652 is classified as a high severity vulnerability due to its potential for unauthorized access and data manipulation.
How do I fix CVE-2025-24652?
To fix CVE-2025-24652, update the Revmakx WP Duplicate – WordPress Migration Plugin to version 1.1.7 or later.
What does CVE-2025-24652 affect?
CVE-2025-24652 affects the Revmakx WP Duplicate – WordPress Migration Plugin up to version 1.1.6.
What type of vulnerability is CVE-2025-24652?
CVE-2025-24652 is a Missing Authorization vulnerability related to incorrectly configured access control security levels.
Who is affected by CVE-2025-24652?
Users of the Revmakx WP Duplicate – WordPress Migration Plugin prior to version 1.1.7 are vulnerable to CVE-2025-24652.