Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total2
Critical0
High0
Medium2
Reset
Showing 1-2 of 2 records
Threat Entry Updated 2025-06-03

CVE-2023-6637 - Host Google Analytics Locally Plugin

The CAOS | Host Google Analytics Locally plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'update_settings' function in versions up to, and including, 4.7.14. This makes it possible for unauthenticated attackers to update plugin settings.

PLUGIN Host Google Analytics Locally

CVE-2023-6637

MEDIUM CVSS 6.5 2024-01-11
Threat Entry Updated 2024-11-21

CVE-2021-25020 - Host Google Analytics Locally Plugin

The CAOS | Host Google Analytics Locally WordPress plugin before 4.1.9 does not validate the cache directory setting, allowing high privilege users to use a path traversal vector and delete arbitrary folders when uninstalling the plugin

PLUGIN Host Google Analytics Locally

CVE-2021-25020

MEDIUM CVSS 4.9 2022-01-03
Scroll to top