What the vulnerability does
01Description
Insertion of Sensitive Information into Log File vulnerability in Frédéric GILLES FG Joomla to WordPress.This issue affects FG Joomla to WordPress: from n/a through 4.20.2.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
What the vulnerability does
Insertion of Sensitive Information into Log File vulnerability in Frédéric GILLES FG Joomla to WordPress.This issue affects FG Joomla to WordPress: from n/a through 4.20.2.
Explanation of Vulnerability in Simple Terms
The FG Joomla to WordPress plugin through version 4.20.2 exposes sensitive information in logs or error messages. An attacker with network access can read this data without authentication. The plugin does not properly restrict access to or sanitize output of sensitive details during operation or debugging.
What an attacker can do
Read sensitive information exposed in plugin logs or error messages without logging in.
Potential impact on your site
Sensitive data (credentials, API keys, or personal information) may be visible to unauthenticated attackers.
Conditions required to exploit
Network access to the site; no authentication or user interaction required.
Key dates
External resources
Related vulnerabilities