Plugin Support
Mehmet
(@gandomi)
Hello @dxylott54,
Thank you for reaching out and for being proactive about your site’s security!
Regarding CVE-2025-14151 (Stored XSS vulnerability in the outbound_resource parameter):
- Affected versions: 5.3.2 and earlier
- Fixed in: Version 5.3.4
To secure your site, please update Slimstat Analytics to version 5.3.4 (the latest version). This update resolves the vulnerability completely.
If you need further assistance or have any other questions, please don’t hesitate to ask. I’m happy to help!
Best regards,
Thank you for your reply!
I can now use SlimStat with peace of mind! ^_^
If possible, please include details of the fixed vulnerabilities (CVE number) in the release notes. This would prevent such inquiries from being necessary.
I would appreciate your consideration of this request.
Plugin Support
Mehmet
(@gandomi)
Hello @dxylott54,
Thank you for your kind words! I’m glad we could help clarify the security update for you.
That’s a great suggestion about including CVE numbers in the release notes. I’ll share this feedback with our development team. We appreciate you taking the time to share this idea – it helps us improve!
If you have any other questions, feel free to reach out anytime.
Best regards,