Cross-Site Scripting Vulnerabilities in Error Log Viewer Plugin for WordPress
CVE-2017-18562
6.1MEDIUM
What is CVE-2017-18562?
The Error Log Viewer plugin for WordPress prior to version 1.0.6 contains multiple Cross-Site Scripting (XSS) vulnerabilities. These weaknesses allow attackers to inject malicious scripts into the web application, which could be executed in the context of a logged-in user's session. This can lead to data theft, session hijacking, and other security breaches. Users are advised to update to the latest version of the plugin to mitigate the associated risks.