Extension WordPress
Vulnérabilités Analytify – Google Analytics Dashboard For WordPress (GA4 analytics tracking)
Cette page rassemble les failles publiées pour Analytify – Google Analytics Dashboard For WordPress (GA4 analytics tracking), leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Analytify – Google Analytics Dashboard For WordPress (GA4 analytics tracking)
13 fiches
Analytify <= 5.5.1 – Missing Authorization to Authenticated (Subscriber+) Minor Settings Update
The Analytify – Google Analytics Dashboard For WordPress (GA4 analytics made easy) plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the rated() function in all versions up to, and…
*-5.5.1
6.0.0
27/03/2025
Analytify <= 5.5.0 – Missing Authorization
The Analytify – Google Analytics Dashboard For WordPress (GA4 analytics made easy) plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 5.5.0. This…
*-5.5.0
5.5.1
14/02/2025
Analytify <= 5.4.3 – Missing Authorization
The Analytify – Google Analytics Dashboard For WordPress (GA4 analytics made easy) plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 5.4.3. This…
*-5.4.3
5.5.0
02/12/2024
Analytify <= 5.3.1 – Cross-Site Request Forgery to Opt-out
The Analytify – Google Analytics Dashboard For WordPress (GA4 analytics made easy) plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 5.3.1. This is due to missing or incorrect nonce validation…
*-5.3.1
5.4.0
12/08/2024
Analytify – Google Analytics Dashboard For WordPress (GA4 analytics made easy) <= 5.2.3 – Cross-Site Request Forgery
The Analytify – Google Analytics Dashboard For WordPress (GA4 analytics made easy) plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 5.2.3. This is due to missing or incorrect nonce validation…
*-5.2.3
5.2.4
06/06/2024
Analytify – Google Analytics Dashboard For WordPress (GA4 analytics made easy) <= 5.2.3 – Missing Authorization
The Analytify – Google Analytics Dashboard For WordPress (GA4 analytics made easy) plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on AJAX functions in combination with nonce leakage in all…
*-5.2.3
5.2.4
29/04/2024
Analytify <= 5.2.1 – Missing Authorization to Unauthenticated Google Analytics Tracking ID Modification
The Analytify – Google Analytics Dashboard For WordPress (GA4 analytics made easy) plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'wpa_check_authentication' function in all versions up to, and…
*-5.2.3
5.2.4
26/04/2024
Analytify Dashboard <= 5.1.1 – Cross-Site Request Forgery
The Analytify – Google Analytics Dashboard For WordPress (GA4 analytics made easy) plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 5.1.1. This is due to missing or incorrect nonce validation…
*-5.1.1
5.2.0
20/11/2023
Analytify Dashboard <= 5.1.0 – Missing Authorization to Opt-In
The Analytify Dashboard plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the optin_yes() function in versions up to, and including, 5.1.0. This makes it possible for authenticated attackers, with…
[*, 5.1.1)
5.1.1
05/09/2023
Analytify <= 4.2.3 – Missing Authorization & Cross-Site Request Forgery
The Analytify plugin for WordPress is vulnerable to authorization bypass & Cross-Site Request Forgery in versions up to, and including, 4.2.3. This is due to missing nonce validation and a lack of capability checking on the logout() function.…
*-4.2.3
4.3.0
03/01/2023
Analytify – Google Analytics Dashboard For WordPress <= 4.2.2 – Cross-Site Request Forgery
The Analytify – Google Analytics Dashboard For WordPress plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 4.2.2. This is due to missing or incorrect nonce validation on the analytify_delete_cache action. This…
*-4.2.2
4.2.3
29/09/2022
Analytify – Google Analytics Dashboard For WordPress <= 4.2.2 – Authorization Bypass
The Analytify plugin for WordPress is vulnerable to authorization bypass due to a missing capability and nonce checks on the analytify_delete_cache function in versions up to, and including, 4.2.2 . This makes it possible for authenticated attackers, with…
*-4.2.2
4.2.3
22/08/2022
Analytify <= 4.2.0 – Reflected Cross-Site Scripting
The Analytify plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in versions up to, and including, 4.2.0. This makes it possible for unauthenticated attackers to…
*-4.2.0
4.2.1
20/06/2022
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.