CVE-2023-40600

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
30/11/2023
Last modified:
29/04/2026

Description

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Exactly WWW EWWW Image Optimizer. It works only when debug.log is turned on.This issue affects EWWW Image Optimizer: from n/a through 7.2.0.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ewww:image_optimizer:*:*:*:*:*:wordpress:*:* 7.2.1 (excluding)