Loading HuntDB...

GHSA-9mcw-hh47-x3v4

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

Cross-site scripting vulnerability in WP Statistics version 12.0.4 and earlier allows remote attackers to inject arbitrary web script or HTML via specially crafted HTTP Referer headers.

Related CVEs

Key Information

GHSA ID
GHSA-9mcw-hh47-x3v4
Published
May 17, 2022 2:46 AM
Last Modified
April 20, 2025 3:37 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 28, 2025 6:37 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.