CVE Database /
CVE-2025-53193
CVE · Medium
CVE-2025-53193 — Burst Statistics – Simple WordPress Analytics (Google Analytics Alternative) [burst-statistics] < 2.0.8
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2025-53193
|
Burst Statistics – Simple WordPress Analytics (Google Analytics Alternative) [burst-statistics] < 2.0.8 |
Cross-Site Request Forgery (CSRF) |
Medium
4.3
|
< 2.0.8
|
2.0.8 |
2025-06-27 |
—
|
CVE-2025-53193
The Burst Statistics plugin for WordPress contains a security flaw in versions up to 2.0.6, allowing malicious individuals to deceive administrators into executing unintended actions by exploiting a weakness in the way certain functions handle nonce validation. This vulnerability enables unauthorized actions without requiring authentication. The issue arises from inadequate or misconfigured nonce checks within the affected plugin.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings