plugin

Bulk Datetime Change Vulnerabilities

1 known security issue reported for the Bulk Datetime Change WordPress plugin. Most recent disclosed Oct 26, 2021.

1 medium

Running Bulk Datetime Change on your site? Check whether your installed version is affected.

Scan your site free

Bulk Datetime Change <= 1.11 - Missing Authorisation

medium

The Bulk Datetime Change WordPress plugin before 1.12 does not enforce capability checks which allows users with Contributor roles to 1) list private post titles of other users and 2) change the posted date of other users' posts.

CVSS:
5.4
Affected:
up to 1.12
Fixed in:
1.12
Disclosed:
Oct 26, 2021

CVE-2021-24842 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database