CVE-2026-84778: WordPress Migrate Guru – Site Migration & Cloning plugin <= 6.65 - Denial of Service Attack vulnerability
Published Sep 3, 2026
·Updated
Unauthenticated Denial of Service Attack in Migrate Guru – Site Migration & Cloning <= 6.65 versions.
Affected Software
1 affected component
wordpress/Migrate Guru – Site Migration & Cloning<=6.65
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress Migrate Guru – Site Migration & Cloningto a version that resolves this vulnerability.Fixed in 6.72
Event History
Sep 3, 2026
CVE Published
via MITRE·04:31 PM
Data Sourced
via MITRE·04:31 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
Who can exploit this issue?
An attacker does not need authentication or user interaction to exploit it, and the attack can be conducted over the network.
2
What is the expected impact of a successful attack?
Successful exploitation can cause a denial of service, affecting the availability of the WordPress site or service. The provided severity vector indicates no confidentiality or integrity impact.
3
Which plugin versions are affected?
Migrate Guru – Site Migration & Cloning versions 6.65 and earlier are identified as affected.