Description
WordPress Plugin WP Activity Log is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. WordPress Plugin WP Activity Log version 3.1.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 3.1.2 or latest
References
Related Vulnerabilities
WordPress Plugin ALO EasyMail Newsletter Cross-Site Request Forgery (2.6.01)
WordPress Plugin Social Media Share Buttons & Social Sharing Icons Security Bypass (1.5.1)
WordPress Plugin Appointment Booking Calendar Cross-Site Scripting (1.3.18)
Oracle Database Server CVE-2012-0526 Vulnerability (CVE-2012-0526)
WordPress Plugin Yoast SEO Unspecified Vulnerability (5.9.2)