| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-3714 | GiveWP – Donation Plugin and Fundraising Platform <= 3.10.0 - Authenticated (Contributor+) Stored Cross-Site Scripting | stellarwp | GiveWP – Donation Plugin and Fundraising Platform | Medium | 6.4 | 2024-05-18 04:30:53 | Deep Dive |
| CVE-2024-1957 | GiveWP – Donation Plugin and Fundraising Platform <= 3.6.1 -- Authenticated(Contributor+) Stored Cross-Site Scripting via Shortcode | stellarwp | GiveWP – Donation Plugin and Fundraising Platform | Medium | 6.4 | 2024-04-13 01:57:48 | Deep Dive |
| CVE-2024-1424 | GiveWP – Donation Plugin and Fundraising Platform <= 3.5.1 - Authenticated (Contributor+) Stored Cross-Site Scripting | stellarwp | GiveWP – Donation Plugin and Fundraising Platform | Medium | 6.4 | 2024-04-09 18:59:19 | Deep Dive |
| CVE-2023-51415 | WordPress GiveWP Plugin <= 3.2.2 is vulnerable to Cross Site Scripting (XSS) | GiveWP | GiveWP – Donation Plugin and Fundraising Platform | Medium | 6.5 | 2024-02-10 08:39:12 | Deep Dive |
| CVE-2023-4247 | GiveWP <= 2.33.3 - Cross-Site Request Forgery to plugin deactivation | stellarwp | GiveWP – Donation Plugin and Fundraising Platform | Medium | 5.4 | 2024-01-11 08:33:05 | Deep Dive |
| CVE-2023-4246 | GiveWP <= 2.33.3 - Cross-Site Request Forgery to plugin installation | stellarwp | GiveWP – Donation Plugin and Fundraising Platform | Medium | 4.3 | 2024-01-11 08:33:03 | Deep Dive |
| CVE-2023-4248 | GiveWP <= 2.33.3 - Cross-Site Request Forgery to Stripe Integration Deletion | stellarwp | GiveWP – Donation Plugin and Fundraising Platform | Medium | 5.4 | 2024-01-11 08:32:30 | Deep Dive |
| CVE-2023-32513 | WordPress GiveWP Plugin <= 2.25.3 is vulnerable to PHP Object Injection | GiveWP | GiveWP – Donation Plugin and Fundraising Platform | High | 7.5 | 2023-12-28 10:46:27 | Deep Dive |
| CVE-2022-40312 | WordPress GiveWP Plugin <= 2.25.1 is vulnerable to Server Side Request Forgery (SSRF) | GiveWP | GiveWP – Donation Plugin and Fundraising Platform | Medium | 5.5 | 2023-12-18 15:08:55 | Deep Dive |
| CVE-2023-25450 | WordPress GiveWP Plugin <= 2.25.1 is vulnerable to Cross Site Request Forgery (CSRF) | GiveWP | GiveWP – Donation Plugin and Fundraising Platform | Medium | 5.4 | 2023-06-15 12:21:36 | Deep Dive |
| CVE-2022-2260 | GiveWP < 2.21.3 - DoS via CSRF | Unknown | GiveWP – Donation Plugin and Fundraising Platform | 中危 | - | 2022-08-01 12:50:58 | Deep Dive |
| CVE-2022-2215 | GiveWP < 2.21.3 - Admin+ Stored Cross-Site Scripting | Unknown | GiveWP – Donation Plugin and Fundraising Platform | 中危 | - | 2022-08-01 12:50:18 | Deep Dive |
| CVE-2022-31475 | WordPress GiveWP plugin <= 2.20.2 - Authenticated Arbitrary File Read via Export function vulnerability | GiveWP | GiveWP (WordPress plugin) | Medium | 5.5 | 2022-07-21 17:24:57 | Deep Dive |
| CVE-2022-28700 | WordPress GiveWP plugin <= 2.20.2 - Authenticated Arbitrary File Creation via Export function vulnerability | GiveWP | GiveWP (WordPress plugin) | Critical | 9.1 | 2022-07-21 17:23:24 | Deep Dive |
| CVE-2022-2117 | GiveWP – Donation Plugin and Fundraising Platform <= 2.20.2 - Sensitive Information Disclosure | stellarwp | GiveWP – Donation Plugin and Fundraising Platform | Medium | 5.3 | 2022-07-18 16:16:48 | Deep Dive |
| CVE-2022-0252 | Give < 2.17.3 - Reflected Cross-Site Scripting via Import Tool | Unknown | GiveWP – Donation Plugin and Fundraising Platform | 中危 | - | 2022-02-21 10:46:09 | Deep Dive |
| CVE-2021-25100 | Give < 2.17.3 - Reflected Cross-Site Scripting via Donation Forms Dashboard | Unknown | GiveWP – Donation Plugin and Fundraising Platform | 中危 | - | 2022-02-21 10:45:54 | Deep Dive |
| CVE-2021-25099 | Give < 2.17.3 - Unauthenticated Reflected Cross-Site Scripting | Unknown | GiveWP – Donation Plugin and Fundraising Platform | 中危 | - | 2022-02-21 10:45:53 | Deep Dive |
| CVE-2021-24524 | GiveWP < 2.12.0 - Authenticated Stored XSS | Unknown | GiveWP – Donation Plugin and Fundraising Platform | 中危 | - | 2021-08-23 11:09:59 | Deep Dive |
| CVE-2021-24315 | Give WP < 2.10.4 - Authenticated Stored Cross-Site Scripting (XSS) | GiveWP | GiveWP – Donation Plugin and Fundraising Platform | 中危 | - | 2021-05-17 16:48:53 | Deep Dive |