Vulnerabilities > User Activity Project

DATE CVE VULNERABILITY TITLE RISK
2023-02-27 CVE-2022-4550 Authentication Bypass by Spoofing vulnerability in User Activity Project User Activity
The User Activity WordPress plugin through 1.0.1 checks headers such as the X-Forwarded-For to retrieve the IP address of the request, which could lead to IP spoofing
network
low complexity
user-activity-project CWE-290
7.5