CVE-2025-24982

Publication date

2025-02-04 04:18:56

Family

jpcert

State

PUBLISHED

Description

Cross-site request forgery vulnerability exists in Activity Log WinterLock versions prior to 1.2.5. If a user views a malicious page while logged in, the log data may be deleted.