Description
WordPress Plugin WP Debugging is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently update plugin's settings. WordPress Plugin WP Debugging version 2.10.2 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.11.0 or latest
References
https://sploitus.com/exploit?id=WPEX-ID:8D0E65EE-FDD1-4FD6-9A27-01664C703D90
https://plugins.svn.wordpress.org/wp-debugging/trunk/readme.txt
Related Vulnerabilities
Magento Deserialization of Untrusted Data Vulnerability (CVE-2019-8141)
WordPress Plugin Kama Click Counter Cross-Site Scripting (3.4.9)
WordPress Plugin Gallery-Flagallery Photo Portfolio Information Disclosure (4.24)
IBM Lotus Domino web server Cross-Site Scripting vulnerabilities
Opencart Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2010-1610)