CVE-2024-56006: WordPress Jetpack Debug Tools plugin < 2.0.1 - Broken Access Control vulnerability
Published May 15, 2025
·Updated
Missing Authorization vulnerability in Automattic Jetpack Debug Tools jetpack-debug-helper.This issue affects Jetpack Debug Tools: from n/a through < 2.0.1.
Other sources
Missing Authorization vulnerability in Automattic Jetpack Debug Tools.This issue affects Jetpack Debug Tools: from n/a before 2.0.1.
— NVD
Affected Software
1 affected component
Automattic Jetpack Debug Tools<2.0.1
Remediation
Information
Update the WordPress Jetpack Debug Tools plugin to the latest available version (at least 2.0.1).
Event History
May 15, 2025
CVE Published
via MITRE·06:24 PM
Data Sourced
via MITRE·06:24 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-56006?
CVE-2024-56006 is classified as a missing authorization vulnerability.
2
How do I fix CVE-2024-56006?
To fix CVE-2024-56006, upgrade the Jetpack Debug Tools plugin to version 2.0.1 or later.
3
Which versions are affected by CVE-2024-56006?
CVE-2024-56006 affects all versions of Jetpack Debug Tools up to but not including version 2.0.1.
4
What kind of systems does CVE-2024-56006 impact?
CVE-2024-56006 impacts the Automattic Jetpack Debug Tools utilized in WordPress installations.
5
What are the consequences of exploiting CVE-2024-56006?
Exploiting CVE-2024-56006 may allow unauthorized access to sensitive debugging information.