CVE · High

CVE-2023-44989 — GSheetConnector – CF7 Google Sheets Connector & Save CF7 Entries to Database [cf7-google-sheets-connector] < 5.0.6

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2023-44989 GSheetConnector – CF7 Google Sheets Connector & Save CF7 Entries to Database [cf7-google-sheets-connector] < 5.0.6 Insertion of Sensitive Information into Log File High 7.5 < 5.0.6 5.0.6 2023-11-30

CVE-2023-44989

The CF7 Google Sheets Connector plugin up through version 5.0.5 contains a flaw in its debug logging feature that exposes sensitive information to unauthenticated users. An attacker without valid credentials could access the debug logs in google-sheet-connector.php to retrieve confidential data. This vulnerability was patched in version 5.0.6.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.