Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Nguyenhg_Vcs

#47669of 53,635
5.3Total CVSS
Vulnerabilities · 1
PT-2021-15909
5.3
2021-06-21
WordPress · Jetpack · CVE-2021-24374
**Name of the Vulnerable Software and Affected Versions** JetPack WordPress plugin versions prior to 9.8 **Description** A security issue was found in the Jetpack Carousel module, which allows users to create image galleries and comment on images. This issue, discovered by nguyenhg vcs, enables the comments of non-published pages or posts to be leaked. **Recommendations** For versions prior to 9.8, update to version 9.8 or later to resolve the issue. As a temporary workaround, consider disabling the Jetpack Carousel module until the update is applied. Restrict access to non-published pages or posts to minimize the risk of comment leakage.