The EWWW Image Optimizer plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 7.2.0 via the debug_log function. This makes it possible for unauthenticated attackers to extract sensitive debug data when debug logging is enabled.
id: CVE-2023-40600
info:
name: EWWW Image Optimizer <= 7.2.0 - Unauthenticated Information Disclo
...