Description
Insertion of Sensitive Information Into Sent Data vulnerability in Logtivity Activity Logs Activity Logs, User Activity Tracking, Multisite Activity Log from Logtivity allows Retrieve Embedded Sensitive Data. This issue affects Activity Logs, User Activity Tracking, Multisite Activity Log from Logtivity: from n/a through 3.3.6.
Problem types
CWE-201 Insertion of Sensitive Information Into Sent Data
Product status
Any version
Credits
Peng Zhou | Patchstack Bug Bounty Program
References
patchstack.com/...tive-data-exposure-vulnerability?_s_id=cve