VendorsPojoactivity_logany version
Vulnerabilities

Pojo Activity Log any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2024-10788
Activity Log – Monitor & Record User Changes <= 2.11.1 - Unauthenticated Stored Cross-Site Scripting via Event Context
Published 2024-11-21 · Analyzed
7.2EPSS 0.008
CVE-2018-8729
Multiple cross-site scripting (XSS) vulnerabilities in the Activity Log plugin before 2.4.1 for WordPress allow remote attackers to inject arbitrary JavaScript or HTML via a title that is not escaped.
Published 2018-03-15 · Modified
6.12 PoCEPSS 0.053
CVE-2016-10890
The aryo-activity-log plugin before 2.3.2 for WordPress has XSS.
Published 2019-08-21 · Modified
6.1EPSS 0.011
CVE-2016-10891
The aryo-activity-log plugin before 2.3.3 for WordPress has XSS.
Published 2019-08-21 · Modified
6.1EPSS 0.010