This issue affects Slimstat Analytics: from n/a through 5.4.11.
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update the WordPress Slimstat Analytics Plugin to the latest available version (at least 5.4.12).
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 18 Jun 2026 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Veronalabs
Veronalabs slimstat Analytics Wordpress Wordpress wordpress |
|
| Vendors & Products |
Veronalabs
Veronalabs slimstat Analytics Wordpress Wordpress wordpress |
|
| Metrics |
ssvc
|
Wed, 17 Jun 2026 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in VeronaLabs Slimstat Analytics allows Blind SQL Injection. This issue affects Slimstat Analytics: from n/a through 5.4.11. | |
| Title | WordPress Slimstat Analytics plugin <= 5.4.11 - SQL Injection vulnerability | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-06-17T15:28:06.250Z
Reserved: 2026-06-16T09:21:46.612Z
Link: CVE-2026-54818
Updated: 2026-06-17T14:14:09.791Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-18T14:00:16Z