CVE · Medium

CVE-2025-30897 — Analytify – Google Analytics Dashboard For WordPress (GA4 analytics tracking) [wp-analytify] < 6.0.0

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2025-30897 Analytify – Google Analytics Dashboard For WordPress (GA4 analytics tracking) [wp-analytify] < 6.0.0 Missing Authorization Medium 4.3 < 6.0.0 6.0.0 2025-03-27

CVE-2025-30897

The Analytify plugin for WordPress has an issue affecting all versions prior to 5.5.2 where a capability check is absent from the rated function, enabling users with Subscriber permissions or higher to manipulate the rated setting without authorization. This flaw allows attackers to alter data within the plugin. The vulnerability affects plugin versions up to and including 5.5.1.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.