
WP Replicate Post Security & Risk Analysis
wordpress.org/plugins/wp-replicate-postReplicate any Post, Pages, etc in single click!
Is WP Replicate Post Safe to Use in 2026?
Generally Safe
Score 99/100WP Replicate Post has a strong security track record. Known vulnerabilities have been patched promptly.
The wp-replicate-post plugin v4.2 exhibits a generally positive security posture due to its minimal attack surface and consistent use of prepared statements for SQL queries. The static analysis reveals no critical or high severity taint flows, and the absence of AJAX handlers, REST API routes, and shortcodes without authentication checks is a significant strength. However, the fact that only 50% of output is properly escaped raises a concern for potential cross-site scripting (XSS) vulnerabilities, especially if sensitive data is being outputted. The plugin's history shows one high-severity SQL injection vulnerability, which, while currently patched, indicates a past weakness in handling user input for database operations. The presence of a nonce check is a good practice, but the complete lack of capability checks across its entry points is a notable omission, potentially allowing unauthorized users to interact with the plugin's functions if they can find a way to trigger them.
Key Concerns
- Half of output is not properly escaped
- No capability checks on entry points
- Past high severity SQL injection vulnerability
WP Replicate Post Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
WP Replicate Post <= 4.0.2 - Authenticated (Contributor+) SQL Injection
WP Replicate Post Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
WP Replicate Post Attack Surface
WordPress Hooks 9
Maintenance & Trust
WP Replicate Post Maintenance & Trust
Maintenance Signals
Community Trust
WP Replicate Post Alternatives
WP Duplicate Page
wp-duplicate-page
Clone WordPress page, post, custom post types
Clone Posts
clone-posts
Easily clone (duplicate) Posts, Pages and Custom Post Types, including their custom fields (post_meta)
Duplicate Post Page Menu & Custom Post Type
duplicate-post-page-menu-custom-post-type
The best plugin to duplicate post, page, menu and custom post type multiple times in a single click.
WP Quick Post Duplicator
wp-quick-post-duplicator
Copy or Duplicate any post types, including pages, taxonomies & custom fields with a single click.
Labinator Content Types Duplicator
labinator-content-types-duplicator
Duplicate posts, pages, widgets, menus, and any content types with one click. Copy or clone your content without limitations. It is 100% free!
WP Replicate Post Developer Profile
14 plugins · 6K total installs
How We Detect WP Replicate Post
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
replicate_item_enable