Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update the WordPress WP Statistics plugin to the latest available version (at least 14.16.15).
Tracking
Sign in to view the affected projects.
No advisories yet.
Sun, 04 Oct 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VeronaLabs WP Statistics wp-statistics allows Reflected XSS.This issue affects WP Statistics: from n/a through 14.16.14. | |
| Title | WordPress WP Statistics plugin <= 14.16.14 - Cross Site Scripting (XSS) vulnerability | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-10-04T07:00:43.091Z
Reserved: 2026-09-24T10:23:19.165Z
Link: CVE-2026-97276
No data.
Status : Received
Published: 2026-10-04T09:16:39.640
Modified: 2026-10-04T09:16:39.640
Link: CVE-2026-97276
No data.
OpenCVE Enrichment
Updated: 2026-10-04T11:00:12Z