Skip to main content

Vendor/product archive

shapedplugin / logo_carousel CVEs

Beta · best-effort

2 CVEs tagged to shapedplugin / logo_carousel0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2021-24739

Published Dec 21, 2021

The Logo Carousel WordPress plugin before 3.4.2 allows users with a role as low as Contributor to duplicate and view arbitrary private posts made by other users via the Carousel D…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2021-24738

Published Dec 21, 2021

The Logo Carousel WordPress plugin before 3.4.2 does not validate and escape the "Logo Margin" carousel option, which could allow users with a role as low as Contributor to perfor…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1