metaphorcreations post duplicator是metaphorcreations个人开发者的一款WordPress内容复制插件。 Metaphor Creations Post Duplicator 3.0.15之前版本存在反序列化漏洞,该漏洞源于在复制文章时未安全处理自定义元数据,存储攻击者提供的序列化值且未使用WordPress元数据API的双序列化保护,可能导致具有贡献者及以上权限的用户注入PHP对象。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Unknown | Post Duplicator | < 3.0.15 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Unknown | Post Duplicator | 0 ~ 3.0.15 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-9710 | Themeco Cornerstone < 7.8.8 (Premium, bundled with X Theme) - Subscriber+ Arbitrary User P | |
| CVE-2026-9709 | Themeco Cornerstone < 7.8.9 (Premium, bundled with X Theme) - Subscriber+ Arbitrary User M | |
| CVE-2026-10531 | AI Share & Summarize < 2.0.4 - Contributor+ Stored XSS via title_style Shortcode Attribute | |
| CVE-2026-10753 | Site Kit by Google < 1.176.0 - Editor+ Email Reporting Settings Update | |
| CVE-2026-10735 | ShapedPlugin Multiple Pro Plugins - Backdoor via Compromised Vendor Update Server |
No comments yet