Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

1clickmigration — Vulnerabilities & Security Advisories 4

Browse all 4 CVE security advisories affecting 1clickmigration. AI-powered Chinese analysis, POCs, and references for each vulnerability.

1clickmigration is a migration tool designed to simplify data transfer between platforms. Historically, it has been associated with multiple critical vulnerabilities including remote code execution (RCE), cross-site scripting (XSS), and privilege escalation flaws. These vulnerabilities often stem from insufficient input validation and improper access controls. The tool has accumulated four CVEs to date, highlighting persistent security concerns. While no major public security incidents have been widely documented, the pattern of vulnerabilities suggests potential risks for organizations relying on this tool for sensitive data migrations. Users should implement strict input validation and maintain updated versions to mitigate known security issues.

CVE IDTitleCVSSSeverityPublished
CVE-2025-3455 1 Click WordPress Migration Plugin – 100% FREE for a limited time <= 2.2 - Missing Authorization to Authenticated (Subscriber+) Arbitrary File Upload — 1 Click Migration & Backup: Free WordPress Migration Plugin with Zero Downtime & Easy CloneCWE-434 8.8 High2025-05-09
CVE-2025-32257 WordPress 1 Click WordPress Migration plugin <= 2.5.7 - Sensitive Data Exposure vulnerability — 1 Click WordPress MigrationCWE-1258 5.3 Medium2025-04-04
CVE-2024-13609 1 Click WordPress Migration Plugin – 100% FREE for a limited time <= 2.2 - Unauthenticated Sensitive Information Exposure via Database Backup in class-ocm-backup.php — 1 Click Migration & Backup: Free WordPress Migration Plugin with Zero Downtime & Easy CloneCWE-200 5.9 Medium2025-02-18
CVE-2024-13555 1 Click WordPress Migration Plugin – 100% FREE for a limited time <= 2.2 - Cross-Site Request Forgery to Backup Process Cancellation — 1 Click Migration & Backup: Free WordPress Migration Plugin with Zero Downtime & Easy CloneCWE-352 5.3 Medium2025-02-18

This page lists every published CVE security advisory associated with 1clickmigration. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.