Vulnerability Details CVE-2022-4550
The User Activity WordPress plugin through 1.0.1 checks headers such as the X-Forwarded-For to retrieve the IP address of the request, which could lead to IP spoofing
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 28.8%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2022-4550
-
cpe:2.3:a:user_activity_project:user_activity:*