https://www.wpvulnerability.net/plugin/duplicate-page/

{“error”:0,”message”:null,”data”:{“name”:”Duplicate Page”,”plugin”:”duplicate-page”,”link”:”https:\/\/wordpress.org\/plugins\/duplicate-page\/”,”latest”:”1749804780″,”closed”:0,”vulnerability”:[{“uuid”:”11e63b4c177a3fbd330141f0d1063650cab98527c45a3b4a6ec5bd08798a81d3″,”name”:”Duplicate Page [duplicate-page] < 4.4.3","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"4.4.3","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2021-24681","name":"CVE-2021-24681","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2021-24681","description":"[en] The Duplicate Page WordPress plugin through 4.4.2 does not sanitise or escape the Duplicate Post Suffix settings before outputting it, which could allow high privilege users to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.","date":"2021-10-11"},{"id":"83c2050d304ad67df03ebbe7efccac250ce2162e","name":"WordPress Duplicate Page plugin <= 4.4.2 – Stored Cross-Site Scripting (XSS) vulnerability","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/duplicate-page\/vulnerability\/wordpress-duplicate-page-plugin-4-4-2-stored-cross-site-scripting-xss-vulnerability","description":"Stored Cross-Site Scripting (XSS) vulnerability discovered by Nikhil Kapoor (EsecForte) in WordPress Duplicate Page plugin (versions <= 4.4.2).","date":"2021-08-28"},{"id":"9eff78876ee6ef98e230951714efe2899c67e223","name":"Duplicate Page <= 4.4.1 Authenticated (Admin+) Stored Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/duplicate-page\/duplicate-page-441-authenticated-admin-stored-cross-site-scripting","description":"The Duplicate Page plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Duplicate Post Suffix settings in versions up to, and including, 4.4.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers with administrative level permissions and above to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.","date":"2021-08-28"},{"id":"9ebdd1df-1d6f-4399-8b0f-77a79f841464","name":"Duplicate Page < 4.4.3 – Admin+ Stored Cross-Site Scripting","link":"https:\/\/wpscan.com\/vulnerability\/9ebdd1df-1d6f-4399-8b0f-77a79f841464","description":"The plugin does not sanitise or escape the Duplicate Post Suffix settings before outputting it, which could allow high privilege users to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.\r\n\r\nThe attempt to fix the issue in 4.4.2 is insufficient and still allows for XSS.","date":null}],"impact":{"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}]}},{"uuid":"a1eeae936a1a26cd56a4e24b228c4502b7e405a3622356e1d53347842590da62","name":"Duplicate Page [duplicate-page] < 3.4","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.4","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"8faa17db6e4c4c305ccdf3047e6868029ac7b535","name":"WordPress Duplicate Page plugin <= 3.3 – Authenticated SQL Injection (SQLi) vulnerability","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/duplicate-page\/vulnerability\/wordpress-duplicate-page-plugin-3-3-authenticated-sql-injection-sqli-vulnerability","description":"Authenticated SQL Injection (SQLi) vulnerability found by Marc-Alexandre Montpas in WordPress Duplicate Page plugin (versions <= 3.3).","date":"2019-04-08"}],"impact":[]},{"uuid":"1ee22ef11b41ca4c11f102a836a7ee8fdfe82749ce5b78dec9811ed14b0428d6","name":"Duplicate Page [duplicate-page] < 3.4","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.4","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"7b71ccf24044ee8cc2cb48e21b580dfda394bc1f","name":"Duplicate Page Plugins <= (Various Versions) – SQL Injection","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/detail\/duplicate-page-plugins-various-versions-sql-injection","description":"The Duplicate Page and Post, WP Post Page Clone and Duplicate Page plugins for WordPress are vulnerable to SQL Injection via the \u2018post\u2019 parameter in versions up to, and including, 2.5.6, 1.1, and 3.3 respectively, due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.","date":"2020-04-25"}],"impact":[]},{"uuid":"2bae1306bbc1a6abd7198b00da500fa84e35408726ed53115fe7ef885a11fff5","name":"Duplicate Page [duplicate-page] < 3.4","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.4","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"d4a895e4769fefb1c9cedee221ed3553b4e736dd","name":"Duplicate Page <= 3.3 – SQL Injection","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/duplicate-page\/duplicate-page-33-sql-injection","description":"The Duplicate Page plugin for WordPress is vulnerable to generic SQL Injection via the \u2018post' parameter in versions up to, and including, 3.3 due to insufficient escaping on the user-supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for non-privileged attackers (Ex. subscribers) to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.","date":"2019-03-22"}],"impact":[]},{"uuid":"b7b8f3f24baaa624168375722db9d4520f8bc8ca977c131c607a4588456855dd","name":"Duplicate Page [duplicate-page] < 3.4","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"3.4","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"d668ff1a-7c38-4d7c-95a0-a64f5e741f2e","name":"Duplicate Page < 3.4 – Authenticated SQL Injection","link":"https:\/\/wpscan.com\/vulnerability\/d668ff1a-7c38-4d7c-95a0-a64f5e741f2e","description":"This vulnerability is exploitable by any users with an account on the vulnerable site (regardless of the privileges they have – e.g., subscribers)","date":null}],"impact":[]}]},"updated":"1750132169"}