Medium severity5.4NVD Advisory· Published Jul 23, 2026· Updated Aug 5, 2026
CVE-2026-65512
CVE-2026-65512
Description
Cross-Site request forgery (CSRF) vulnerability in Melapress WP Activity Log and Melapress WP Activity Log Premium allows Cross Site Request Forgery.
This issue affects WP Activity Log: through 5.6.4; WP Activity Log Premium: through 5.6.4.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3<=5.6.4+ 1 more
- (no CPE)range: <=5.6.4
- (no CPE)range: <=5.6.4
- Range: <=5.6.4
Patches
Vulnerability mechanics
References
2- patchstack.com/database/WordPress/Plugin/wp-security-audit-log-premium/vulnerability/wordpress-wp-activity-log-premium-plugin-5-6-4-cross-site-request-forgery-csrf-vulnerabilitynvd
- patchstack.com/database/wordpress/plugin/wp-security-audit-log/vulnerability/wordpress-wp-activity-log-plugin-5-6-4-cross-site-request-forgery-csrf-vulnerabilitynvd
News mentions
1- Wordfence Intelligence Weekly WordPress Vulnerability Report (July 20, 2026 to July 26, 2026)Wordfence Blog · Jul 30, 2026