VYPR

Sync Post With Other Site

by WordPress

CVEs (4)

  • CVE-2026-32463CriAug 18, 2026
    risk 0.64cvss 9.9epss 0.00

    Contributor Arbitrary File Upload in Sync Post With Other Site <= 1.9.3 versions.

  • CVE-2024-32082HigApr 15, 2024
    risk 0.46cvss 7.1epss 0.00

    Cross-Site Request Forgery (CSRF) vulnerability in Kamlesh Parmar Sync Post With Other Site sync-post-with-other-site allows Cross Site Request Forgery.This issue affects Sync Post With Other Site: from n/a through <= 1.9.1.

  • CVE-2024-6709MedAug 3, 2024
    risk 0.21cvss 4.3epss 0.00

    The Sync Post With Other Site plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'sps_add_update_post' function in all versions up to, and including, 1.6. This makes it possible for authenticated attackers, with…

  • CVE-2026-14923MedJul 30, 2026
    risk 0.00cvss 6.5epss 0.00

    The Sync Post With Other Site WordPress plugin before 1.9.3 does not correctly enforce the page-editing capability on a REST route that creates and updates posts, because of an operator-precedence flaw in its authorization check. An authenticated user holding only the…