CVE-2021-25042 | WP Visitor Statistics Plugin up to 5.4 on WordPress AJAX Action updateIpAddress cross-site request forgery
A vulnerability, which was classified as problematic, has been found in WP Visitor Statistics Plugin up to 5.4 on WordPress. Impacted is the function updateIpAddress of the component AJAX Action Handler. This manipulation causes cross-site request forgery.
This vulnerability is tracked as CVE-2021-25042. The attack is possible to be carried out remotely. No exploit exists.
It is advisable to upgrade the affected component.