CVE-2026-1671 — The Activity Log for WordPress plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the winter_activity_log_action() function in all versions up to, a — CVE Database · The Intelligence Room