Back

HIGH

WordPress Slimstat Analytics plugin <= 5.4.11 - SQL Injection vulnerability

Published Jun 17, 2026

Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in VeronaLabs Slimstat Analytics allows Blind SQL Injection.

This issue affects Slimstat Analytics: from n/a through 5.4.11.

Affected products

Remediation

Vendor solution

Update the WordPress Slimstat Analytics Plugin to the latest available version (at least 5.4.12).

Weaknesses (1)

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner Patchstack
Published Jun 17, 2026
Updated Jun 17, 2026
Reserved Jun 16, 2026

CISA Vulnrichment

Updated Jun 17, 2026

NVD

Status Deferred
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner Patchstack
Published Jun 17, 2026
Updated Jun 17, 2026

GitHub

No data