WordPress security by component
Secure Copy Content Protection and Content Locking
Plugin description
Secure Copy Content Protection and Content Locking is a WordPress component with 7 published CVE records in this archive. The latest tracked vulnerability was published Jun 12, 2026; the highest CVE/CNA score is 9.8.
Plugin slug:
secure-copy-content-protection-and-content-lockingLatest vulnerability
CVE-2026-9269: Secure Copy Content Protection and Content Locking: Cross-site scripting
Secure Copy Content Protection and Content Locking is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed. The published affected range is < 5.1.5.
| Safe version |
|
||
|---|---|---|---|
| Jun 12, 2026 |
CVE-2026-9269
Secure Copy Content Protection and Content Locking: Cross-site scripting
Secure Copy Content Protection and Content Locking is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed. The published affected range is < 5.1.5.
|
5.1.5 |
CVE3.5
NVDPending
|
| Feb 12, 2026 |
CVE-2026-1320
Secure Copy Content Protection and Content Locking: Cross-site scripting
Secure Copy Content Protection and Content Locking is affected by cross-site scripting. The vulnerable path is reachable without authentication. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE7.2
NVDPending
|
| Sep 04, 2024 |
CVE-2024-6889
Secure Copy Content Protection and Content Locking: Cross-site scripting
Secure Copy Content Protection and Content Locking is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE4.8
NVD4.8
|
| Sep 04, 2024 |
CVE-2024-6888
Secure Copy Content Protection and Content Locking: Cross-site scripting
Secure Copy Content Protection and Content Locking is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE4.8
NVD4.8
|
| Jul 11, 2024 |
CVE-2024-6138
Secure Copy Content Protection and Content Locking: Cross-site scripting
Secure Copy Content Protection and Content Locking is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE6.5
NVD4.8
|
| Dec 06, 2021 |
CVE-2021-24931
Secure Copy Content Protection and Content Locking: SQL injection
Secure Copy Content Protection and Content Locking is affected by SQL injection. The vulnerable path is reachable without authentication. A successful request can alter database queries and expose or modify WordPress data.
|
See mitigation notes |
CVE9.8
NVD9.8
|
| Aug 02, 2021 |
CVE-2021-24484
get_reports() function in the Secure Copy Content Protection and Content Locking: SQL injection
get_reports() function in the Secure Copy Content Protection and Content Locking is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
|
See mitigation notes |
CVE7.2
NVD7.2
|