7.5
CVSSv3

CVE-2022-4550

Published: 27/02/2023 Updated: 07/11/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The User Activity WordPress plugin up to and including 1.0.1 checks headers such as the X-Forwarded-For to retrieve the IP address of the request, which could lead to IP spoofing

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

user activity project user activity