Input validation vulnerability in AnalyticsWP 2.0.0

The AnalyticsWP plugin used on WordPress has a security issue called SQL Injection. This is because the plugin does not properly check for authorization when using the ‘custom_sql’ feature. This means that someone who is not logged in can add their own queries to existing ones, which can lead to the exposure of private information from the database.

Detected in:

AnalyticsWP fixed vulnerable versions: >= * <= 2.0.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.