Security report for CVE GiveWP – Donation Plugin and Fundraising Platform > CVE-2021-24524
- CVE, Research URL
- Published on
- Aug 23, 2021
- Research Description
- The GiveWP – Donation Plugin and Fundraising Platform WordPress plugin before 2.12.0 did not escape the Donation Level setting of its Donation Forms, allowing high privilege users to use Cross-Site Scripting payloads in them.
- Affected versions
-
Min -, max 2.21.3.
- Status
-
vulnerable