Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VeronaLabs WP Statistics wp-statistics allows Reflected XSS.This issue affects WP Statistics: from n/a through 14.16.14.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
Update the WordPress WP Statistics plugin to the latest available version (at least 14.16.15).
Workaround
No workaround given by the vendor.
References
History
Sun, 04 Oct 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VeronaLabs WP Statistics wp-statistics allows Reflected XSS.This issue affects WP Statistics: from n/a through 14.16.14. | |
| Title | WordPress WP Statistics plugin <= 14.16.14 - Cross Site Scripting (XSS) vulnerability | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-10-04T07:00:43.091Z
Reserved: 2026-09-24T10:23:19.165Z
Link: CVE-2026-97276
No data.
Status : Received
Published: 2026-10-04T09:16:39.640
Modified: 2026-10-04T09:16:39.640
Link: CVE-2026-97276
No data.
OpenCVE Enrichment
No data.
Weaknesses