CVE-2025-13471
EUVD-2025-20641228.01.2026, 06:15
The User Activity Log WordPress plugin through 2.2 does not properly handle failed login attempts in some cases, allowing unauthenticated users to set arbitrary options to 1 (for example to enable User Registration when it has been turned off)Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.