CVE-2025-59397: Openwebanalytics Open Web Analytics

Medium severity, CVSS 5.0. EPSS: 0.4% chance of exploitation in the next 30 days.

Open Web Analytics (OWA) before 1.8.1 allows owa_db.php v[value] SQL injection.

Affected products

Published 2025-09-15. Last modified 2026-06-17.