Security Advisory
CVE-2021-24739
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The Logo Carousel WordPress plugin before 3.4.2 allows users with a role as low as Contributor to duplicate and view arbitrary private posts made by other users via the Carousel Duplication feature