Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Supun Halangoda

#35463of 53,632
7.5Total CVSS
Vulnerabilities · 1
PT-2024-14870
7.5
2024-01-01
WordPress · Payhere Payment Gateway · CVE-2023-6064
**Name of the Vulnerable Software and Affected Versions** PayHere Payment Gateway WordPress plugin versions prior to 2.2.12 **Description** The issue arises from the automatic creation of publicly-accessible log files containing sensitive information when transactions occur. This affects the PayHere Payment Gateway WordPress plugin. **Recommendations** For versions prior to 2.2.12, update to version 2.2.12 or later to resolve the issue. As a temporary workaround, consider restricting access to the log files until a patch is applied.