Vulnerabilities > Bulk Datetime Change Project

DATE CVE VULNERABILITY TITLE RISK
2021-11-29 CVE-2021-24842 Incorrect Authorization vulnerability in Bulk Datetime Change Project Bulk Datetime Change
The Bulk Datetime Change WordPress plugin before 1.12 does not enforce capability checks which allows users with Contributor roles to 1) list private post titles of other users and 2) change the posted date of other users' posts.
network
low complexity
bulk-datetime-change-project CWE-863
5.4