Activity Log – Monitor & Record User Changes

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in Activity Log – Monitor & Record User Changes 2.11.1

    Fixed

    A plugin called "Activity Log – Monitor & Record User Changes" for WordPress has a security issue that can be exploited by hackers. This issue, known as Stored Cross-Site Scripting, affects all ve...

    Read More
  • Input validation vulnerability in Activity Log 2.8.7

    Fixed

    The Activity Log plugin for WordPress versions up to and including 2.8.7 is vulnerable to IP Address Spoofing. This means that an unauthenticated attacker can provide a false IP address instead of th...

    Read More
  • Input validation vulnerability in Activity Log 2.6.1

    Fixed

    The Activity Log plugin for WordPress versions 2.3.5 - 2.6.1 is vulnerable to a security issue known as SQL Injection. SQL Injection is when an attacker can add additional malicious code to an existi...

    Read More
  • Access violation vulnerability in Activity Log 2.0.4

    Fixed

    The Activity Log plugin for WordPress, used up to version 2.0.3, has a security vulnerability that could allow unauthorized people to access sensitive information such as the full path of the WordPre...

    Read More
  • Output validation vulnerability in Activity Log 2.8.3

    Fixed

    The Activity Log plugin for WordPress is not secure in versions up to 2.8.3. This means that someone who is not authorized to access the plugin can insert malicious code into the exported CSV files. W...

    Read More
  • Input validation vulnerability in Activity Log 2.3.3

    Fixed

    The Activity Log Plugin for WordPress is vulnerable to a type of malicious code called Reflected Cross-Site Scripting (XSS) up to and including version 2.3.2. This type of code can be injected into w...

    Read More
  • Input validation vulnerability in Activity Log 2.3.2

    Fixed

    The Activity Log plugin for WordPress

    Read More
  • Input validation vulnerability in Activity Log 2.3.3

    Fixed

    The aryo-activity-log plugin (a plugin for the WordPress website platform) before version 2.3.3 has a security issue where a hacker could insert malicious code into the search_data parameter on the ar...

    Read More
  • Input validation vulnerability in Activity Log 2.4.0

    Fixed

    The Activity Log plugin for WordPress had a problem before version 2.4.1 that allowed people from outside the website to add malicious code

    Read More