CVE-2025-24736
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Summary
CVE-2025-24736 is a security vulnerability affecting Metaphor Creations Post Duplicator, specifically versions from n/a to 2.35. This issue involves missing authorization, which enables unauthorized users to exploit incorrectly configured access control security levels. As a result, attackers can gain unauthorized access to Post Duplicator features and functionality, potentially leading to data manipulation, unauthorized data access, or further system compromise. System administrators are strongly advised to update to the latest version or implement appropriate access control measures to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- WordPress