Security report for CVE GiveWP – Donation Plugin and Fundraising Platform > CVE-2023-0224
- CVE, Research URL
- Published on
- Jan 16, 2024
- Research Description
- The GiveWP WordPress plugin before 2.24.1 does not properly escape user input before it reaches SQL queries, which could let unauthenticated attackers perform SQL Injection attacks
- Affected versions
-
Min -, max 2.25.2.
- Status
-
vulnerable