Software intelligence
Important: Wp Time Capsule appearing in this catalog does not mean your website is affected. Exposure depends on your installed version. How SiteRespond intelligence works
Tracked advisories
9
Latest advisory
8 July 2026
CISA KEV matches
0
In this WordPress feed
WordPress slug
wp-time-capsule
Plugin
This catalog lists 9 known advisories affecting Wp Time Capsule. The most recent was published on 8 July 2026. If you use this software, compare your installed version against the affected ranges on each advisory and update to a fixed release outside those ranges. SiteRespond Defence checks your actual installed version when the plugin is connected — listing here does not by itself mean your site is vulnerable.
Backup and Staging by WP Time Capsule <= 1.22.26 - Missing Authorization to Authenticated (Subscriber+) Sensitive Information Exposure via download_recent_decrypted_file_wptc Function
This advisory describes a other issue in the affected software. Review the source advisory and your installed version to assess exposure.
Published 8 July 2026
Backup and Staging by WP Time Capsule <= 1.22.25 - Missing Authorization
This advisory describes a other issue in the affected software. Review the source advisory and your installed version to assess exposure.
Published 30 May 2026
Backup and Staging by WP Time Capsule <= 1.22.23 - Reflected Cross-Site Scripting
May allow attackers to run scripts in visitors' browsers or hijack admin sessions.
Published 4 June 2025
Known Wp Time Capsule advisories published by month.
CVE-2026-8996 · Published 8 July 2026
Affected versions: ≤ 1.22.26
CVE-2026-42760 · Published 30 May 2026
Affected versions: ≤ 1.22.25
CVE-2025-47477 · Published 4 June 2025
Affected versions: ≤ 1.22.23
CVE-2024-8856 · Published 15 November 2024
Affected versions: ≤ 1.22.21
CVE-2024-49684 · Published 21 October 2024
Affected versions: ≤ 1.22.21
CVE-2024-48020 · Published 8 October 2024
Affected versions: ≤ 1.22.21
CVE-2024-38770 · Published 13 July 2024
Affected versions: ≤ 1.22.20
CVE-2021-25035 · Published 21 December 2021
Affected versions: ≤ 1.22.6
CVE-2020-8771 · Published 14 January 2020
Affected versions: < 1.21.16
SiteRespond Defence matches your installed Wp Time Capsule version against this catalog when the Defence plugin is connected to your WordPress site.