#WPVivid
📌 CVE-2024-10962 - The Migration, Backup, Staging – WPvivid plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 0.9.107 via ... https://www.cyberhub.blog/cves/CVE-2024-10962
CVE-2024-10962
The Migration, Backup, Staging – WPvivid plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 0.9.107 via deserialization of untrusted input in the 'replace_row_data' and 'replace_serialize_data' functions. This makes it possible for unauthenticated attack
www.cyberhub.blog
October 4, 2026 at 3:37 PM
Safeguard Your WordPress Site Today! Discover 4 Essential Backup Methods to Protect Your Digital Presence. Dive into our comprehensive guide and ensure your website's safety: edywerder.ch/how-to-backu...
How do I back up my WordPress website? 4 essential methods
Guide to backup your WordPress website Explore Duplicator Pro and WPvivid – the ideal tool for site backups and migration
edywerder.ch
October 1, 2026 at 3:02 PM
【2026年08月18日】WordPress 脆弱性まとめ: WPvivid、Simple JWT Login など 9 件

WordPress本体、WPvivid Backup & Migration、Simple JWT Login などのプラグインに複数の脆弱性が見つかりました。サイトへの影響と対策をまとめました。
【2026年08月18日】WordPress 脆弱性まとめ: WPvivid、Simple JWT Login など 9 件
WordPress本体、WPvivid Backup & Migration、Simple JWT Login などのプラグインに複数の脆弱性が見つかりました。サイトへの影響と対策をまとめました。
wp-vuln.devops-digest.com
August 18, 2026 at 2:37 AM
CVE-2026-19725 - wpvivid — backup, migration & staging
An attacker can create log files in any directory they choose on a WordPress site using WPvivid Backup & Migration. This can lead to sensitive information being…

Too many irrelevant or confusing CVEs? Use stackflag.com

#unknown #CVE #infosec
CVE-2026-19725: WPvivid Backup & Migration < 0.9.131: Uncontrolled Log File Creation
An attacker can create log files in any directory they choose on a WordPress site using WPvivid Backup & Migration.
stackflag.com
August 17, 2026 at 10:10 PM
WordPress WPvivid插件SQL注入漏洞CVE-2026-17555深度解析:网站安全风险与防护指南

https://qian.cx/posts/799B8DBE-00A7-4F9F-8AF7-5F1D0C40FF9F
August 1, 2026 at 6:41 PM
Уязвимость CVE-2026-17555 в плагине WPvivid Backup & Migration: как защитить сайт на WordPress

https://kripta.biz/posts/E2F6A739-0C4D-477B-985D-31730A37DEE3
August 1, 2026 at 6:41 PM
Уязвимость CVE-2026-17555 в плагине WPvivid: как SQL-инъекция угрожает безопасности WordPress

https://kripta.biz/posts/4535E2BA-4D1A-4513-95B4-3FB294290154
August 1, 2026 at 5:56 PM
🚨 EUVD-2026-51791
📊 4.9/10
🏢 wpvividplugins

📝 The WPvivid Backup & Migration plugin for WordPress is vulnerable to SQL Injection via the export_data parameter in versions up to, and including, ...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-51791

#cybersecurity #infosec #cve #euvd
August 1, 2026 at 10:01 AM
Reporte semanal WordPress: 4 CVEs críticos jul 2026

#wordfenceintelligence #CVEwordpress2026 #pluginsvulnerables #CVSSwordpress #seguridadwordpress
Reporte semanal WordPress: 4 CVEs críticos jul 2026 - Seguridad en Wordpress
Wordfence Intelligence detectó +80 CVEs en la semana del 29 jun al 5 jul 2026. Modular DS (CVSS 10.0), miniOrange y WPVivid (9.8) requieren acción inmediata.
seguridadenwordpress.com
July 14, 2026 at 10:34 PM
Уязвимость CVE-2026-15283 в плагине WPvivid Backup для MainWP: угроза для безопасности WordPress

https://kripta.biz/posts/C541DCB4-D01B-4653-9929-BD2D1E03838A
July 10, 2026 at 7:55 PM
WordPress插件WPvivid Backup漏洞分析:CVE-2026-15283的安全威胁与防护指南

https://qian.cx/posts/A4CC0B50-95E0-4168-8C94-01F998778F3A
July 10, 2026 at 7:49 PM
🚨 EUVD-2026-42791
📊 4.4/10
🏢 wpvividplugins

📝 The WPvivid Backup for MainWP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and inclu...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-42791

#cybersecurity #infosec #cve #euvd
July 10, 2026 at 6:00 AM
Feed: "Wordpress Plugin"
By: Wordpress on Thursday, July 9, 2026
Plug-in WPvivid — Backup, Migration & Staging just updated with vers 0.9.130
The plug-in has got an update at Thursday 9 July 26. This vers is tested 7.0. At this moment it has 900000 installs at several Wordpress websites. The first vers was publised on Fri 04.01.19, and it w...
wp-plugin.org
July 9, 2026 at 5:06 PM
📌 CVE-2020-36842 - The Migration, Backup, Staging – WPvivid plugin for WordPress is vulnerable to arbitrary file uploads due to a missing capability check on the wpvivid... https://www.cyberhub.blog/cves/CVE-2020-36842
CVE-2020-36842
The Migration, Backup, Staging – WPvivid plugin for WordPress is vulnerable to arbitrary file uploads due to a missing capability check on the wpvivid_upload_import_files and wpvivid_upload_files AJAX actions that allows low-level authenticated attackers to upload zip files that can be subsequently
www.cyberhub.blog
July 5, 2026 at 5:37 PM
June 13, 2026 at 1:18 PM
CVE-2025-12656 wpvivid-backuprestore (CVSS Score 3.8)

#WordPress plugin #vulnerability #cybersecurity #wordpressfirewall #wordpresssecurity #hacking #wpsecurity #atomicedge #cybersecurity #malware #vulnerabilityresearch #cve #redteam #proofofconcept #wpvivid-backuprestore
CVE-2025-12656 – wpvivid-backuprestore Proof of Concept - Atomic Edge
CVE-2025-12656 vulnerability in wpvivid-backuprestore WordPress plugin. Proof of concept, ModSecurity rule, and patched version analysis by Atomic Edge.
atomicedge.io
June 13, 2026 at 1:16 PM
mixhostからロリポップへ移行した記録|WordPress簡単引っ越し失敗→WPvividで解決 blog.ruricat.com/mixhost-loli...
mixhostからロリポップへ移行した記録|WordPress簡単引っ越し失敗→WPvividで解決
mixhostからロリポップへWordPressを移行しました ロリポップのWordPress簡単引っ越しを利用したものの、引っ越し処理で失敗 最終的にWPvividを使って無事に移行完了! エラーが
blog.ruricat.com
June 9, 2026 at 9:30 AM
CVE-2025-12656 - Migration, Backup, Staging – WPvivid Backup & Migration
CVE ID : CVE-2025-12656

Published : June 6, 2026, 12:16 a.m. | 16 minutes ago

Description : The Migration, Backup, Staging – WPvivid Backup &amp; Migration plugin for WordPress is vulnerable to arbi...
CVE-2025-12656 - Migration, Backup, Staging – WPvivid Backup & Migration <= 0.9.128 - Authenticated (Admin+) Arbitrary Directory Deletion
The Migration, Backup, Staging – WPvivid Backup & Migration plugin for WordPress is vulnerable to arbitrary directory deletion due to insufficient file path validation in the delete_cancel_staging_site() function in all versions up to, and including, 0.9.128. This makes it possible for authenticated attackers, with Administrator-level access and above, to delete …
cvefeed.io
June 6, 2026 at 1:08 AM
🚨 EUVD-2025-210080
📊 3.8/10
🏢 wpvividplugins

📝 The Migration, Backup, Staging – WPvivid Backup & Migration plugin for WordPress is vulnerable to arbitrary directory deletion due to insufficien...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-210080

#cybersecurity #infosec #cve #euvd
June 6, 2026 at 1:00 AM
Feed: "Wordpress Plugin"
By: Wordpress on Monday, June 1, 2026
WPvivid — Backup, Migration & Staging has got an update with version 0.9.129
The wp plugin got an update at 1 June 2026. This vers is tested 7.0. At this moment it has 900000 active installs at many WP sites. The first vers was created on Fri 04 January 19, and it was download...
wp-plugin.org
June 1, 2026 at 6:25 AM
Feed: "Wordpress Plugin"
By: Wordpress on Wednesday, May 27, 2026
WordPress WPvivid — Backup, Migration & Staging received an update with version 0.9.128
The plug-in is updated at 27-5-2026. The vers is tested at 7.0. At this moment it got 900000 active installs at many Wordpress sites. The first vers was released on 04 January 19, and it was downloade...
wp-plugin.org
May 27, 2026 at 5:57 AM
El cuc fa aervir 5 CVEs públics, tots amb actualitzaci:
– Next.js: bypass d’auth via capçalera HTTP
– React2Shell (CVSS 10.0): RCE sense autenticació
– CentOS Web Panel: injecció de shell
– W3 Total Cache: injecció PHP
– WPVivid Backup: upload de fitxers sense auth
Cap zero-day.
May 9, 2026 at 4:43 PM
WPvivid CVE-2026-1357: RCE en 900.000 sitios

CVE-2026-1357 en WPvivid Backup expone 900.000 sitios WordPress a ejecución remota de código sin auth. Actualizá a 0.9.124 ya. Guía completa.

#wpvivid #cve20261357 #rcewordpress #backupwordpress #seguridadplugins
WPvivid CVE-2026-1357: RCE en 900.000 sitios - Seguridad en Wordpress
CVE-2026-1357 es un RCE crítico (CVSS 9.8) en WPvivid Backup que permite toma de control total sin autenticación. Afecta versiones ≤0.9.123. El parche es la versión 0.9.124.
seguridadenwordpress.com
May 3, 2026 at 3:49 AM