CVE · Medium

CVE-2025-24750 — ExactMetrics – Google Analytics Dashboard for WordPress (Website Stats Plugin) [google-analytics-dashboard-for-wp] < 8.2.0

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2025-24750 ExactMetrics – Google Analytics Dashboard for WordPress (Website Stats Plugin) [google-analytics-dashboard-for-wp] < 8.2.0 Missing Authorization Medium 5.4 < 8.2.0 8.2.0 2025-01-24

CVE-2025-24750

The ExactMetrics plugin for WordPress contains a security flaw that allows users with higher-than-necessary permissions to bypass intended restrictions on certain actions. This issue affects all versions of the plugin up through 8.1.0, where it is possible for users with Contributor-level access or above to execute an unauthorized function.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.