CVE List

CVE-2021-24524

Moderate 4.8

The GiveWP – Donation Plugin and Fundraising Platform WordPress plugin before 2.12.0 did not escape the Donation Level setting of its Donation Forms, allowing high privilege users to use Cross-Site Scripting payloads in them.

Published August 23, 2021.

Affected software

Get alerts for Givewp Givewp

Reference links