
Debug Log Manager – Conveniently Monitor and Inspect Errors Security & Risk Analysis
wordpress.org/plugins/debug-log-managerLog PHP, database and JavaScript errors via WP_DEBUG with one click. Conveniently create, view, filter and clear the debug.log file.
Is Debug Log Manager – Conveniently Monitor and Inspect Errors Safe to Use in 2026?
Generally Safe
Score 91/100Debug Log Manager – Conveniently Monitor and Inspect Errors has a strong security track record. Known vulnerabilities have been patched promptly.
The debug-log-manager plugin presents a mixed security posture. While it demonstrates good practices in SQL query handling, file operations, and a significant portion of output escaping, several significant concerns emerge. The most critical issue is the large attack surface composed of 10 AJAX handlers, all of which lack authorization checks. This makes it highly susceptible to unauthorized actions by unauthenticated users. Furthermore, the plugin's history of 7 known CVEs, including high-severity vulnerabilities like missing authorization, cross-site scripting, and information exposure, indicates a recurring pattern of security weaknesses. The recent vulnerability in 2025, even if currently patched, suggests that the plugin's development may not consistently prioritize security in its updates. While the absence of critical taint flows and raw SQL queries are positive, the extensive unprotected entry points and historical vulnerability record necessitate caution.
Key Concerns
- 10 AJAX handlers without auth checks
- 7 known CVEs (2 high, 5 medium)
- 2 flows with unsanitized paths
- 21% of outputs not properly escaped
- Bundled DataTables library
Debug Log Manager – Conveniently Monitor and Inspect Errors Security Vulnerabilities
CVEs by Year
Severity Breakdown
7 total CVEs
Debug Log Manager <= 2.3.4 - Unauthenticated Stored Cross-Site Scripting
Debug Log Manager <= 2.3.1 - Missing Authorization
Debug Log Manager <= 2.3.1 - Missing Authorization via toggle_debugging
Debug Log Manager <= 2.3.1 - Unauthenticated Stored Cross-Site Scripting
Debug Log Manager <= 2.2.2 - Directory Listing to Sensitive Information Disclosure
Debug Log Manager <= 2.2.0 - Cross-Site Request Forgery
Debug Log Manager <= 2.2.1 - Missing Authorization
Debug Log Manager – Conveniently Monitor and Inspect Errors Code Analysis
Bundled Libraries
Output Escaping
Data Flow Analysis
Debug Log Manager – Conveniently Monitor and Inspect Errors Attack Surface
AJAX Handlers 10
WordPress Hooks 13
Maintenance & Trust
Debug Log Manager – Conveniently Monitor and Inspect Errors Maintenance & Trust
Maintenance Signals
Community Trust
Debug Log Manager – Conveniently Monitor and Inspect Errors Alternatives
Error Logs Emailer for WooCommerce
error-logs-emailer-for-woocommerce
Sends the previous day's WooCommerce fatal error log to specified email(s) using Action Scheduler.
LogMate
logmate
Modern log management and export for WordPress with purging, filtering, and export. by BruteFort
Debug Log – Manager Tool
debug-log-config-tool
The "Debug Log Config Tool" simplifies debugging. Toggle logging,queries , view levels, clear logs from dashboard.
Debug This
debug-this
Peek under the hood with sixty debugging reports just one click away.
Debug Bar Console
debug-bar-console
Adds a PHP/SQL console to the Debug Bar. Requires the Debug Bar plugin.
Debug Log Manager – Conveniently Monitor and Inspect Errors Developer Profile
7 plugins · 211K total installs
How We Detect Debug Log Manager – Conveniently Monitor and Inspect Errors
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/debug-log-manager/assets/css/debug-log-manager.css/wp-content/plugins/debug-log-manager/assets/js/debug-log-manager.js/wp-content/plugins/debug-log-manager/assets/js/log-viewer.js/wp-content/plugins/debug-log-manager/assets/js/dist/debug-log-manager.min.js/wp-content/plugins/debug-log-manager/assets/js/dist/log-viewer.min.js/wp-content/plugins/debug-log-manager/assets/js/debug-log-manager.js/wp-content/plugins/debug-log-manager/assets/js/log-viewer.js/wp-content/plugins/debug-log-manager/assets/js/dist/debug-log-manager.min.js/wp-content/plugins/debug-log-manager/assets/js/dist/log-viewer.min.jsdebug-log-manager/assets/css/debug-log-manager.css?ver=debug-log-manager/assets/js/debug-log-manager.js?ver=debug-log-manager/assets/js/log-viewer.js?ver=debug-log-manager/assets/js/dist/debug-log-manager.min.js?ver=debug-log-manager/assets/js/dist/log-viewer.min.js?ver=HTML / DOM Fingerprints
dlm-log-viewerdlm-toolbardata-dlm-ajax-urldlm_ajax_objectDLM_LOG_VIEWER_CONFIG/wp-json/debug-log-manager/v1/settings