A vulnerability categorized as problematic has been discovered in gamerz WP-Stats Plugin up to 2.56 on WordPress. The affected element is an unknown function. Such manipulation leads to cross site scripting. This vulnerability is listed as CVE-2026-19794 . The attack may be performed from remote. There is no available exploit.