CVE Database
/

CVE-2021-24374

Back to search

CVE-2021-24374

Published: Jun 21, 2021

Modified: Aug 3, 2024

PUBLISHED

Description

The Jetpack Carousel module of the JetPack WordPress plugin before 9.8 allows users to create a "carousel" type image gallery and allows users to comment on the images. A security vulnerability was found within the Jetpack Carousel module by nguyenhg_vcs that allowed the comments of non-published page/posts to be leaked.

VendorProductVersions

Automattic

Jetpack – WP Security, Backup, Speed, & Growth

affected
9.8 - < 9.8

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now