Known Vulnerabilities for WordPress Backup Migration by WebToffee
Listed below are 10 of the newest known vulnerabilities associated with "WordPress Backup Migration" by "WebToffee".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2025-24651 json | Insertion of Sensitive Information into Log File vulnerability in WebToffee WordPress Backup & Migration wp-migration-duplica... | Not Provided | 2025-04-17 | 2026-04-01 |
| CVE-2025-14944 json | The Backup Migration plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 2.0.0.... | Not Provided | 2026-04-07 | 2026-04-08 |
| CVE-2024-13609 json | The 1 Click WordPress Migration Plugin – 100% FREE for a limited time plugin for WordPress is vulnerable to Sensitive Infor... | Not Provided | 2025-02-18 | 2026-04-08 |
| CVE-2024-13555 json | The 1 Click WordPress Migration Plugin – 100% FREE for a limited time plugin for WordPress is vulnerable to Cross-Site Requ... | Not Provided | 2025-02-18 | 2026-04-08 |
| CVE-2024-5551 json | The WP STAGING Pro WordPress Backup Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions u... | Not Provided | 2024-06-14 | 2026-04-08 |
| CVE-2024-3546 json | The WordPress Backup & Migration plugin for WordPress is vulnerable to unauthorized access of data due to a missing capabilit... | Not Provided | 2024-05-02 | 2026-04-08 |
| CVE-2024-3412 json | The WP STAGING WordPress Backup Plugin – Migration Backup Restore plugin for WordPress is vulnerable to arbitrary file uplo... | Not Provided | 2024-05-29 | 2026-04-08 |
| CVE-2024-3054 json | WPvivid Backup & Migration Plugin for WordPress is vulnerable to PHAR Deserialization in all versions up to, and including, 0... | Not Provided | 2024-04-12 | 2026-04-08 |
| CVE-2024-1982 json | The Migration, Backup, Staging – WPvivid plugin for WordPress is vulnerable to unauthorized access due to a missing capabil... | Not Provided | 2024-02-29 | 2026-04-08 |
| CVE-2023-7002 json | The Backup Migration plugin for WordPress is vulnerable to OS Command Injection in all versions up to, and including, 1.3.9 ... | Not Provided | 2023-12-23 | 2026-04-08 |