WP Clinic
Log in Sign up

CVE · Medium

CVE-2020-20626 — Lara's Google Analytics (GA4) [lara-google-analytics] < 2.0.5

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2020-20626 Lara's Google Analytics (GA4) [lara-google-analytics] < 2.0.5 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Medium 5.4 < 2.0.5 2.0.5 2019-10-14

CVE-2020-20626

An authenticated stored Cross-Site Scripting (XSS) vulnerability within the "Google Analytics – by Lara" WordPress plugin was found to be exploited in the wild by security vendor NinTechNet.

Source: WPScan

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.