Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Nguyenhg_Vcs

#49985of 56,333
5.3Total CVSS
Vulnerabilities · 1
PT-2021-15909
5.3
2021-06-21
WordPress · Jetpack · CVE-2021-24374
**Name of the Vulnerable Software and Affected Versions** JetPack WordPress plugin versions prior to 9.8 **Description** A security issue was found in the Jetpack Carousel module, which allows users to create image galleries and comment on images. This issue, discovered by nguyenhg vcs, enables the comments of non-published pages or posts to be leaked. **Recommendations** For versions prior to 9.8, update to version 9.8 or later to resolve the issue. As a temporary workaround, consider disabling the Jetpack Carousel module until the update is applied. Restrict access to non-published pages or posts to minimize the risk of comment leakage.