High severity7.1NVD Advisory· Published Jun 8, 2024· Updated Jun 17, 2026
CVE-2024-35737
CVE-2024-35737
Description
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Loopus WP Visitors Tracker allows Reflected XSS.This issue affects WP Visitors Tracker: from n/a through 2.3.
Affected products
3- Range: <=2.3
cpe:2.3:a:loopus:wp_visitors_tracker:*:*:*:*:*:wordpress:*:*+ 1 more
- cpe:2.3:a:loopus:wp_visitors_tracker:*:*:*:*:*:wordpress:*:*range: <2.4
- (no CPE)range: n/a
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.