cleantalk
Vulnerabilities and Security Researches

Image Source Control Lite – Show Image Credits and Captions, CVE-2021-24781

CVE, Research URL

CVE-2021-24781

Published on
Nov 01, 2021
Research Description
The Image Source Control WordPress plugin before 2.3.1 allows users with a role as low as Contributor to change arbitrary post meta fields of arbitrary posts (even those they should not be able to edit)
Affected versions
max 2.3.1.
Status
vulnerable