Known Vulnerabilities for Backup Migration by Unknown

Listed below are 10 of the newest known vulnerabilities associated with "Backup Migration" by "Unknown".

These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-82194 json The WPvivid — Backup, Migration & Staging WordPress plugin before 0.9.134 does not validate a user supplied path before usi... Not Provided 2026-09-04 2026-09-04
CVE-2026-82193 json The WPvivid — Backup, Migration & Staging WordPress plugin before 0.9.134 does not validate a user supplied file name befor... Not Provided 2026-09-04 2026-09-04
CVE-2026-82182 json The WPvivid — Backup, Migration & Staging WordPress plugin before 0.9.133 does not sanitise a user supplied list of identif... Not Provided 2026-09-02 2026-09-02
CVE-2026-81804 json Unauthenticated Sensitive Data Exposure in ZHBackup – Backup, Restore & Migration <= 2.4.2 versions. Not Provided 2026-09-10 2026-09-10
CVE-2026-76549 json The UpdraftPlus: WP Backup & Migration Plugin WordPress plugin before 1.26.7 does not have CSRF checks in one of its backup m... Not Provided 2026-08-27 2026-08-27
CVE-2026-55439 json Halo is an open source website building tool. Prior to 2.24.3, a path traversal vulnerability in the backup download endpoint... Not Provided 2026-06-25 2026-06-25
CVE-2026-39480 json Unauthenticated Sensitive Data Exposure in Backup Migration <= 2.1.1 versions. Not Provided 2026-06-15 2026-06-15
CVE-2026-19949 json The All-in-One WP Migration and Backup plugin for WordPress is vulnerable to SQL Injection via archive restore functionality ... Not Provided 2026-08-25 2026-08-27
CVE-2026-19725 json The WPvivid — Backup, Migration & Staging WordPress plugin before 0.9.131 does not sanitise a value taken from an unauthent... Not Provided 2026-08-16 2026-08-17
CVE-2026-19722 json The WPvivid — Backup, Migration & Staging WordPress plugin before 0.9.133 does not validate the destination of files extrac... Not Provided 2026-08-30 2026-09-03

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report