WordPress Analytify Plugin Missing Authorization Vulnerability Allowing Settings Change

Vulnerability

A missing authorization vulnerability has been identified in the WordPress Analytify plugin, affecting versions through 5.5.1. This vulnerability arises from incorrectly configured access control security levels, allowing unauthorized users to change settings.

Impact

Exploitation of this vulnerability could lead to unauthorized changes in plugin settings, potentially allowing for further manipulation of the WordPress site or its data.

Remediation

Users of the WordPress Analytify plugin should update to version 6.0.0 or later to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
5.2
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.