inurl:logs/gravityforms
# Exploit Title: WordPress GravityForms Information Leak
# Google Dork: inurl:logs/gravityforms
# Description: Websites using gravity forms have debug logs that are
publicly available. Note that some include information that has some
information from paypal: addresses, cookies, email addresses, ip addresses.
# Date: Sunday Sept. 23, 2018
# Exploit Author: Dhruv Gramopadhye (dgramop)
# Vendor Homepage: https://www.gravityforms.com/
# Version: 2.3.2
# Contact: https://dgramop.xyz
Version number estimated, future versions may be affected.