CyberRota Analysis
AI-GeneratedThe Duplicate Post plugin for WordPress prior to version 1.5.6 is vulnerable as it fails to verify user permissions before allowing the duplication of password-protected posts. This oversight enables users with delegated roles to potentially expose sensitive content by republishing it as publicly accessible. WordPress site administrators using this plugin should prioritize updating to the latest version to mitigate the risk of unauthorized content exposure.
Original NVD Description
The Duplicate Post WordPress plugin before 1.5.6 does not check that a user may read the content of a post before duplicating it, allowing users with a delegated role to republish another user's password-protected post as publicly readable.