
JS Error Logger Security & Risk Analysis
wordpress.org/plugins/js-error-loggerLogs front-end javascript errors, and displays them in a dashboard widget
Is JS Error Logger Safe to Use in 2026?
Generally Safe
Score 100/100JS Error Logger has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "js-error-logger" plugin v1.3.1 exhibits a mixed security posture. On the positive side, the code demonstrates good practices with 100% of SQL queries using prepared statements and nearly all output being properly escaped. The absence of known CVEs and a clean vulnerability history also suggest a relatively mature and secure codebase in the past. However, significant security concerns arise from the attack surface analysis, specifically the presence of 7 AJAX handlers, 5 of which lack authentication checks. This creates a substantial entry point for potential attacks. While taint analysis shows no critical or high severity unsanitized paths, the unprotected AJAX handlers could still be exploited to trigger actions or log data in unintended ways, especially if combined with other vulnerabilities or social engineering. The plugin has a single cron event and limited file operations, which are positive indicators of reduced risk in those areas. Overall, the plugin's strengths lie in its secure data handling (SQL, output escaping) and lack of past vulnerabilities, but the unprotected AJAX endpoints represent a notable weakness that requires immediate attention to mitigate potential security risks.
Key Concerns
- Unprotected AJAX handlers (5)
- Limited nonce checks (2)
- Limited capability checks (1)
JS Error Logger Security Vulnerabilities
JS Error Logger Code Analysis
Output Escaping
JS Error Logger Attack Surface
AJAX Handlers 7
WordPress Hooks 18
Scheduled Events 1
Maintenance & Trust
JS Error Logger Maintenance & Trust
Maintenance Signals
Community Trust
JS Error Logger Alternatives
Simple Log Viewer
simple-log-viewer
A simple plugin to log errors in real time in a metabox in the admin panel, too integrated with WP-CLI
Error Log Monitor
error-log-monitor
Adds a Dashboard widget that displays the latest messages from your PHP error log. It can also send logged errors to email.
SOGO Add Script to Individual Pages Header Footer
oh-add-script-header-footer
Simple plugin to add script to header and footer for individual pages & posts
TC Custom JavaScript
tc-custom-javascript
Add custom JavaScript to your site from a professional editor in the WordPress admin.
Jquery Validation For Contact Form 7
jquery-validation-for-contact-form-7
New standard of advance validation for Contact Form 7.
JS Error Logger Developer Profile
3 plugins · 190 total installs
How We Detect JS Error Logger
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/js-error-logger/res/toastr/toastr.min.js/wp-content/plugins/js-error-logger/js/settings.js/wp-content/plugins/js-error-logger/js/error-logger.js/wp-content/plugins/js-error-logger/js/error-logger.jsjs-error-logger/js/error-logger.js?ver=js-error-logger/res/toastr/toastr.min.js?ver=HTML / DOM Fingerprints
jserrlog-log-tablejserrlog-settings-formjserrlog-accent-color<!-- JS Error Logger --><!-- JSERRLOG -->data-jserrlog-noncedata-jserrlog-urldata-jserrlog-log-idjserrlog/wp-json/js-error-logger/v1/log/wp-json/js-error-logger/v1/settings