What is CVE-2026-57370?
This vulnerability is an Unauthenticated Cross Site Scripting (XSS) issue in Visitor Traffic Real Time Statistics Pro plugin versions up to 11.9.1. It may lead to remote code execution or session hijacking on affected systems, and immediate update to the latest version is recommended.
Azərbaycanca: Bu boşluq "Visitor Traffic Real Time Statistics Pro" pluqininin 11.9.1-ə qədər versiyalarında doğrulanmamış Cross Site Scripting (XSS) zəifliyidir. Təsirə məruz qalan sistemlərdə uzaqdan kod icrasına və ya sessiya oğurluğuna səbəb ola bilər, dərhal ən son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-79
FAQ2
Which versions of the Visitor Traffic Real Time Statistics Pro plugin are vulnerable to CVE-2026-57370 XSS?
Versions up to 11.9.1 of the plugin are affected by this vulnerability.
What are the potential consequences of CVE-2026-57370?
It may lead to remote code execution or session hijacking.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.