cleantalk
Vulnerabilities and Security Researches

WP Activity Log, CVE-2025-0767

CVE, Research URL

CVE-2025-0767

Application

WP Activity Log

Published on
Feb 28, 2025
Research Description
WP Activity Log 5.3.2 was found to be vulnerable. Unvalidated user input is used directly in an unserialize function in myapp/classes/Writers/class-csv-writer.php.
Affected versions
Min -, max 5.3.3.
Status
vulnerable