CVE Database /
CVE-2025-30897
CVE · Medium
CVE-2025-30897 — Analytify – Google Analytics Dashboard For WordPress (GA4 analytics tracking) [wp-analytify] < 6.0.0
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2025-30897
|
Analytify – Google Analytics Dashboard For WordPress (GA4 analytics tracking) [wp-analytify] < 6.0.0 |
Missing Authorization |
Medium
4.3
|
< 6.0.0
|
6.0.0 |
2025-03-27 |
—
|
CVE-2025-30897
The Analytify plugin for WordPress has an issue affecting all versions prior to 5.5.2 where a capability check is absent from the rated function, enabling users with Subscriber permissions or higher to manipulate the rated setting without authorization. This flaw allows attackers to alter data within the plugin. The vulnerability affects plugin versions up to and including 5.5.1.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings