PT-2026-4424 · Unknown · Ajax Hits Counter + Popular Posts Widget

Nabil Irawan

·

Published

2026-01-23

·

Updated

2026-01-24

·

CVE-2026-24587

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions kutsy AJAX Hits Counter + Popular Posts Widget versions through 0.10.210305
Description An issue exists in kutsy AJAX Hits Counter + Popular Posts Widget related to incorrectly configured access control security levels, potentially allowing unauthorized access. The issue affects the ajax-hits-counter component.
Recommendations Update to a version newer than 0.10.210305.

Fix

Missing Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-24587

Affected Products

Ajax Hits Counter + Popular Posts Widget