cleantalk
Vulnerabilities and Security Researches

Donation Forms by Charitable – Donations Plugin & Fundraising Platform for WordPress, CVE-2025-30770

CVE, Research URL

CVE-2025-30770

Published on
Mar 27, 2025
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Syed Balkhi Charitable allows DOM-Based XSS. This issue affects Charitable: from n/a through 1.8.4.7.
Affected versions
Min -, max 1.8.4.8.
Status
vulnerable