Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update the WordPress Visitors Traffic Real Time Statistics plugin to the latest available version (at least 8.12).
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 13 Aug 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wordpress
Wordpress wordpress Wp-buy Wp-buy visitor Traffic Real Time Statistics |
|
| Vendors & Products |
Wordpress
Wordpress wordpress Wp-buy Wp-buy visitor Traffic Real Time Statistics |
Thu, 13 Aug 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 13 Aug 2026 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Unauthenticated Cross Site Scripting (XSS) in Visitors Traffic Real Time Statistics <= 8.11 versions. | |
| Title | WordPress Visitors Traffic Real Time Statistics plugin <= 8.11 - Cross Site Scripting (XSS) vulnerability | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-08-13T15:18:23.966Z
Reserved: 2026-02-25T12:14:40.739Z
Link: CVE-2026-28175
Updated: 2026-08-13T15:18:19.443Z
Status : Deferred
Published: 2026-08-13T14:16:59.533
Modified: 2026-08-14T19:09:20.713
Link: CVE-2026-28175
No data.
OpenCVE Enrichment
Updated: 2026-08-13T16:45:04Z