Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

WordPress Plugin 'WP Statistics' Allows Unauthenticated SQL Injection

MINI-25h7-p45r-94c8
Summary

A security weakness in the WP Statistics plugin for WordPress allows an attacker to execute malicious SQL code, potentially allowing them to access sensitive data. This affects website owners who use the WP Statistics plugin to track visitor statistics. To protect your website, update the plugin to the latest version or remove it if not essential.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versionsFix available
minio-operator-6 All versions
minio-operator-6-compat All versions
minio-operator-6-sidecar All versions
minio-operator-6-sidecar-compat All versions
Original title
MINI-25h7-p45r-94c8
Published: 9 Mar 2026 · Updated: 13 Mar 2026 · First seen: 9 Mar 2026