plugin

Jh 404 Logger Vulnerabilities

1 known security issue reported for the Jh 404 Logger WordPress plugin. Most recent disclosed Mar 11, 2021.

1 medium

Running Jh 404 Logger on your site? Check whether your installed version is affected.

Scan your site free

JH 404 Logger <= 1.1 - Unauthenticated Stored Cross-Site Scripting

medium

The JH 404 Logger WordPress plugin through 1.1 doesn't sanitise the referer and path of 404 pages, when they are output in the dashboard, which leads to executing arbitrary JavaScript code in the WordPress dashboard.

CVSS:
6.1
Affected:
up to 1.1
Fix:
No patched version reported
Disclosed:
Mar 11, 2021

CVE-2021-24176 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database