Extension WordPress
Vulnérabilités Debug Log Manager – Conveniently Monitor and Inspect Errors
Cette page rassemble les failles publiées pour Debug Log Manager – Conveniently Monitor and Inspect Errors, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Debug Log Manager – Conveniently Monitor and Inspect Errors
9 fiches
Debug Log Manager <= 2.5.0 – Unauthenticated Improper Output Neutralization for Logs via log_js_errors AJAX Action
The Debug Log Manager – Conveniently Monitor and Inspect Errors plugin for WordPress is vulnerable to Improper Output Neutralization for Logs in all versions up to, and including, 2.5.0. This is due to the `log_js_errors()` AJAX handler being…
*-2.5.0
2.5.1
05/06/2026
Debug Log Manager <= 2.3.4 – Unauthenticated Stored Cross-Site Scripting
The Debug Log Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the auto-refresh debug log in all versions up to, and including, 2.3.4 due to insufficient input sanitization and output escaping. This makes it possible…
*-2.3.4
2.3.5
18/04/2025
Debug Log Manager <= 2.3.4 – Unauthenticated Stored Cross-Site Scripting
The Debug Log Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.3.4 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary…
*-2.3.4
2.3.5
17/04/2025
Debug Log Manager <= 2.3.1 – Missing Authorization
The Debug Log Manager plugin for WordPress is vulnerable to unauthorized access and modification of data due to a missing capability check on the get_latest_entries and disable_wp_file_editor functions in versions up to, and including, 2.3.1. This makes it…
*-2.3.1
2.3.2
03/06/2024
Debug Log Manager <= 2.3.1 – Missing Authorization via toggle_debugging
The Debug Log Manager plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the toggle_debugging function in versions up to, and including, 2.3.1. This makes it possible for authenticated attackers,…
*-2.3.1
2.3.2
29/04/2024
Debug Log Manager <= 2.3.1 – Unauthenticated Stored Cross-Site Scripting
The Debug Log Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 2.3.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject…
*-2.3.1
2.3.2
16/04/2024
Debug Log Manager <= 2.2.2 – Directory Listing to Sensitive Information Disclosure
The Debug Log Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.2.2 due to directory listing allowed in the folder housing debug logs. This makes it possible for unauthenticated…
*-2.2.2
2.3.0
13/12/2023
Debug Log Manager <= 2.2.0 – Cross-Site Request Forgery
The Debug Log Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.2.1. This is due to missing or incorrect nonce validation on the clear_log() function. This makes it possible…
*-2.2.1
2.2.2
29/11/2023
Debug Log Manager <= 2.2.1 – Missing Authorization
The Debug Log Manager plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the clear_log() function hooked via AJAX in all versions up to, and including, 2.2.1. This makes it…
*-2.2.1
2.2.2
23/11/2023
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.