Input validation vulnerability in User Activity Log Pro 2.3.3

The User Activity Log Pro plugin for WordPress is vulnerable to an issue called IP Address Spoofing. This means that in versions up to 2.3.3, it does not properly check the IP address of the user. This makes it possible for attackers to pretend to be someone else and perform actions that will be attributed to the wrong IP address.

Detected in:

User Activity Log Pro open vulnerable versions: >= * <= 2.3.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.