Medium 5.4
2023-09-22< 1.0.29
CVE-2023-4774
Minimum safe version
1.0.29
Update to 1.0.29 or later to address 9 fixable vulnerabilities
CVE-2023-4774
WP-Piwik <= 1.0.10 - Unauthenticated Stored Cross-Site Scripting (XSS)
WP-Matomo Integration (WP-Piwik) < 1.0.27 - Plugin Settings Reset via CSRF
CVE-2023-33211
WP-Matomo Integration (WP-Piwik) < 1.0.11 - Unauthenticated Stored Cross-Site Scripting
WP-Matomo Integration (WP-Piwik) <= 1.0.26 - Cross-Site Request Forgery
WordPress Piwik Plugin <= 1.0.4 - Cross-Site Scripting (XSS)
WordPress Piwik Plugin <= 1.0.9 - Persistent Cross Site Scripting
CVE-2015-9405