← Back to CVE List
CVE-2021-24739
The Logo Carousel WordPress plugin before 3.4.2 allows users with a role as low as Contributor to duplicate and view arbitrary private posts made by other users via the Carousel Duplication feature
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt