WordPress security by component
Advanced Page Visit Counter
Plugin description
Advanced Page Visit Counter tracks and displays page visit counts and related view statistics for WordPress content.
Advanced Page Visit Counter (advanced-page-visit-counter) is a WordPress plugin with 7 published CVE records in this archive. The latest tracked vulnerability was published May 15, 2025; the highest published CVSS base score is 8.8.
Plugin slug:
advanced-page-visit-counterLatest vulnerability
CVE-2023-5529: Advanced Page Visit Counter: Cross-site scripting
Advanced Page Visit Counter is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
| Safe version |
|
||
|---|---|---|---|
| May 15, 2025 |
CVE-2023-5529
Advanced Page Visit Counter: Cross-site scripting
Advanced Page Visit Counter is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE4.8
NVDPending
|
| Apr 15, 2024 |
CVE-2024-32098
Advanced Page Visit Counter: SQL injection
Advanced Page Visit Counter is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
|
See mitigation notes |
CVE7.6
NVDPending
|
| Dec 20, 2023 |
CVE-2023-28788
Advanced Page Visit Counter – Most Wanted Analytics Plugin for WordPress: SQL injection
Advanced Page Visit Counter – Most Wanted Analytics Plugin for WordPress is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
|
See mitigation notes |
CVE7.1
NVD8.8
|
| Dec 14, 2023 |
CVE-2023-50371
Advanced Page Visit Counter – Most Wanted Analytics Plugin for WordPress: Cross-site scripting
Advanced Page Visit Counter – Most Wanted Analytics Plugin for WordPress is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE6.5
NVD5.4
|
| Nov 06, 2023 |
CVE-2023-45074
Advanced Page Visit Counter – Most Wanted Analytics Plugin for WordPress: SQL injection
Advanced Page Visit Counter – Most Wanted Analytics Plugin for WordPress is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
|
See mitigation notes |
CVE8.5
NVD9.8
|
| May 02, 2022 |
CVE-2021-25086
Advanced Page Visit Counter: Cross-site scripting
Advanced Page Visit Counter is affected by cross-site scripting. The vulnerable path is reachable without authentication. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVEPending
NVD6.1
|
| Apr 25, 2022 |
CVE-2021-24957
Advanced Page Visit Counter: SQL injection
Advanced Page Visit Counter is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
|
See mitigation notes |
CVEPending
NVD8.8
|