The module contains a flaw that allows a user with the 'clone node' permission to potentially bypass normal viewing access restrictions, for example allowing the user to see unpublished nodes even if they do not have permission to view unpublished nodes.