Vulnerabilities > Activity LOG Project

DATE CVE VULNERABILITY TITLE RISK
2023-09-25 CVE-2023-4281 Unspecified vulnerability in Activity LOG Project Activity LOG
This Activity Log WordPress plugin before 2.8.8 retrieves client IP addresses from potentially untrusted headers, allowing an attacker to manipulate its value.
network
low complexity
activity-log-project
5.3
2022-11-11 CVE-2022-3941 Improper Encoding or Escaping of Output vulnerability in Activity LOG Project Activity LOG
A vulnerability has been found in Activity Log Plugin and classified as critical.
network
low complexity
activity-log-project CWE-116
5.3
2022-11-08 CVE-2022-27858 Improper Neutralization of Formula Elements in a CSV File vulnerability in Activity LOG Project Activity LOG
CSV Injection vulnerability in Activity Log Team Activity Log <= 2.8.3 on WordPress.
network
low complexity
activity-log-project CWE-1236
critical
9.8