CVE-2021-24197
The wpDataTables plugin before version 3.4.2 suffers from an access control vulnerability in its premium edition that allows authenticated users with low privilege levels to manipulate the formdata[wdt_ID] parameter and view or modify data belonging to other users within the same table. An attacker exploiting this flaw could gain unauthorized access to and control over all user data present in affected tables by escalating their permissions beyond their intended scope. This vulnerability only impacts the premium version of the plugin, despite the shared plugin slug with the free version.
Based on public CVE data (MITRE/NVD).