Description
WordPress Plugin WP Debugging is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently update plugin's settings. WordPress Plugin WP Debugging version 2.10.2 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.11.0 or latest
References
https://sploitus.com/exploit?id=WPEX-ID:8D0E65EE-FDD1-4FD6-9A27-01664C703D90
https://plugins.svn.wordpress.org/wp-debugging/trunk/readme.txt
Related Vulnerabilities
TCExam Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2021-20114)
WordPress Plugin Event Calendar WD-Responsive Event Calendar Cross-Site Scripting (1.1.44)
WordPress Plugin Memphis Documents Library Cross-Site Request Forgery (3.9.20)
Jenkins Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-2609)