Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
WordPress Plugin 'WP Statistics' Allows Unauthenticated SQL Injection
MINI-25h7-p45r-94c8
Summary
A security weakness in the WP Statistics plugin for WordPress allows an attacker to execute malicious SQL code, potentially allowing them to access sensitive data. This affects website owners who use the WP Statistics plugin to track visitor statistics. To protect your website, update the plugin to the latest version or remove it if not essential.
What to do
No fix is available yet. Check with your software vendor for updates.
Affected software
| Vendor | Product | Affected versions | Fix available |
|---|---|---|---|
| – | minio-operator-6 | All versions | – |
| – | minio-operator-6-compat | All versions | – |
| – | minio-operator-6-sidecar | All versions | – |
| – | minio-operator-6-sidecar-compat | All versions | – |
Original title
MINI-25h7-p45r-94c8
Published: 9 Mar 2026 · Updated: 13 Mar 2026 · First seen: 9 Mar 2026