CVE-2019-9909: XSS
Published Mar 21, 2019
·Updated
The "Donation Plugin and Fundraising Platform" plugin before 2.3.1 for WordPress has wp-admin/edit.php csv XSS.
Affected Software
1 affected component
GiveWP GiveWP WordPress<2.3.1
Event History
Mar 21, 2019
CVE Published
via MITRE·11:01 PM
Data Sourced
via MITRE·11:01 PM
Description
Mar 22, 2019
Data Sourced
via NVD·12:29 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2019-9909.
2
What is the title of this vulnerability?
The title of this vulnerability is 'The Donation Plugin and Fundraising Platform plugin before 2.3.1 for WordPress has wp-admin/edit.php csv XSS.'
3
What is the severity of CVE-2019-9909?
The severity of CVE-2019-9909 is medium.
4
How does CVE-2019-9909 affect the 'Donation Plugin and Fundraising Platform' plugin for WordPress?
CVE-2019-9909 affects the 'Donation Plugin and Fundraising Platform' plugin for WordPress version up to exclusive 2.3.1.
5
What is the Common Weakness Enumeration (CWE) ID for this vulnerability?
The Common Weakness Enumeration (CWE) ID for this vulnerability is CWE-79.