CVE-2026-65512: Melapress Wp Activity Log

Medium severity, CVSS 5.4. EPSS: 0.1% chance of exploitation in the next 30 days.

Cross-Site request forgery (CSRF) vulnerability in Melapress WP Activity Log and Melapress WP Activity Log Premium allows Cross Site Request Forgery. This issue affects WP Activity Log: through 5.6.4; WP Activity Log Premium: through 5.6.4.

Affected products

  • Melapress Wp Activity Log: up to and including 5.6.4
  • Melapress Wp Activity Log Premium: up to and including 5.6.4

Published 2026-07-23. Last modified 2026-08-05.