CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.3. It affects WordPress.
CVE
CVE-2024-0868
Severity
MEDIUM
CVSS
5.3
EPSS
0.48%
WordPress
Original NVD Description
The coreActivity: Activity Logging plugin for WordPress plugin before 2.1 retrieved IP addresses of requests via headers such X-FORWARDED to log them, allowing users to spoof them by providing an arbitrary value
Related CVEs
Other vulnerabilities affecting the same vendor(s)