
Easy Post Duplicator Security & Risk Analysis
wordpress.org/plugins/easy-post-duplicatorPlugin duplicates the posts, pages all at once based on the post type,post status and even year of posts created.
Is Easy Post Duplicator Safe to Use in 2026?
High Risk
Score 42/100Easy Post Duplicator carries significant security risk with 2 known CVEs, 2 still unpatched. Consider switching to a maintained alternative.
The "easy-post-duplicator" v1.0.1 plugin presents a mixed security profile. While the static analysis indicates a seemingly small attack surface with no apparent unprotected AJAX handlers, REST API routes, shortcodes, or cron events, and all identified outputs are properly escaped, there are concerning signals. Specifically, the presence of unsanitized paths in taint analysis suggests potential vulnerabilities related to how input is handled, which could be exploited if an attacker can influence these paths. The vulnerability history is a significant red flag, with two known medium-severity vulnerabilities: Cross-site Scripting (XSS) and SQL Injection. The fact that both of these remain unpatched is a critical concern. The history of these vulnerability types indicates a recurring pattern of improper input sanitization, which is a fundamental security weakness.
Key Concerns
- Unpatched CVEs (2)
- Taint analysis: unsanitized paths
- SQL queries: 50% not using prepared statements
- No nonce checks
Easy Post Duplicator Security Vulnerabilities
CVEs by Year
Severity Breakdown
2 total CVEs
Easy Post Duplicator <= 1.0.1 - Reflected Cross-Site Scripting
Easy Post Duplicator <= 1.0.1 - Authenticated (Subscriber+) SQL Injection
Easy Post Duplicator Code Analysis
SQL Query Safety
Data Flow Analysis
Easy Post Duplicator Attack Surface
WordPress Hooks 1
Maintenance & Trust
Easy Post Duplicator Maintenance & Trust
Maintenance Signals
Community Trust
Easy Post Duplicator Alternatives
Duplicate Post
copy-delete-posts
Duplicate post
Duplicate Post – duplicate pages, copy content, clone posts
duplicate-post-rb
Duplicate Post RB makes it easy to duplicate posts, pages and custom post types. Create duplicate posts, clone content, automate duplication
Quick Copy – Duplicate Posts & Pages
duplicator-post-page
Easily duplicate any post or page, including all metadata and taxonomies, with just one click.
WP Clone any post type
wp-clone-any-post-type
Cloning posts, pages and custom post types in WordPress.
FeedWordPress Duplicate Post Filter
feedwordpress-duplicate-post-filter
A FeedWordPress syndicated post filter that checks for duplicates before posting items from your feeds.
Easy Post Duplicator Developer Profile
3 plugins · 100 total installs
How We Detect Easy Post Duplicator
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.