Advanced Page Visit Counter – Most Wanted Analytics Plugin for WordPress

Advanced Page Visit Counter – Most Wanted Analytics Plugin for WordPress has 9 disclosed vulnerabilities in the WordSec catalog, reported between 2022 and 2024; 6 are fixed and 3 remain unpatched as of September 2026. Their average CVSS score is 7.3, and the most serious one scores 9.1 out of 10. Severity breakdown: 1 critical and 4 high. 2023 was the busiest year with 4 disclosures.

The most common weakness is Cross-Site Scripting, behind 4 of the records (44%). Other recurring categories include SQL Injection, Missing Authorization.

6 of the records (67%) have a vendor fix, while 3 remain unpatched. The oldest unresolved one dates back to 2023.

7 independent researchers contributed these findings, most of them (2) reported by Krzysztof Zając.

Strategic Overview

Avg CVSSHigh
7.3/ 10
Patch Coverage67%
Open

3

Fixed

6

Get automatic notifications for all Advanced Page Visit Counter – Most Wanted Analytics Plugin for WordPress vulnerabilities before they are exploited.

Most severe open issueCVSS 9.1CVE-2024-32098

Advanced Page Visit Counter <= 8.0.6 - Authenticated (Administrator+) SQL Injection

Read the full analysis

Vulnerability Records

9 records
2024-04-11 00:00CVE-2024-32098
9.1
Critical
Le Ngoc AnhNo
2024-01-23 00:00CVE-2023-5529
4.4
Medium
Furkan ÖZERNo
2023-12-07 00:00CVE-2023-50371
6.4
Medium
Abu Hurayra (HurayraIIT)No
2023-10-03 00:00CVE-2023-45074
8.8
High
TomS (Rand0mGen)Yes
2023-07-18 00:00CVE-2023-33999
6.1
Medium
Rafie MuhammadYes
2023-03-27 00:00CVE-2023-28788
8.8
High
minhtuanactYes
2022-04-08 00:00CVE-2021-24957
8.8
High
Krzysztof ZającYes
2022-04-05 00:00CVE-2021-25086
7.2
High
Krzysztof ZającYes
2022-03-04 00:00CVE-2022-4974
6.3
Medium
AnonymousYes
Showing 1–9 of 9 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C