Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update the WordPress WP Statistics plugin to the latest available version (at least 14.16.15).
Tracking
Sign in to view the affected projects.
No advisories yet.
Sun, 04 Oct 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Veronalabs
Veronalabs wp Statistics Wordpress-extensions Wordpress-extensions wp Statistics |
|
| Vendors & Products |
Veronalabs
Veronalabs wp Statistics Wordpress-extensions Wordpress-extensions wp Statistics |
Sun, 04 Oct 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VeronaLabs WP Statistics wp-statistics allows Reflected XSS.This issue affects WP Statistics: from n/a through 14.16.14. | |
| Title | WordPress WP Statistics plugin <= 14.16.14 - Cross Site Scripting (XSS) vulnerability | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-10-04T07:00:43.091Z
Reserved: 2026-09-24T10:23:19.165Z
Link: CVE-2026-97276
No data.
Status : Received
Published: 2026-10-04T09:16:39.640
Modified: 2026-10-04T09:16:39.640
Link: CVE-2026-97276
No data.
OpenCVE Enrichment
Updated: 2026-10-04T20:48:53Z
