First published: Mon Dec 18 2023(Updated: )
Server-Side Request Forgery (SSRF) vulnerability in GiveWP GiveWP – Donation Plugin and Fundraising Platform.This issue affects GiveWP – Donation Plugin and Fundraising Platform: from n/a through 2.25.1.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Givenu Givenu Give | <=2.25.1 |
Update to 2.25.2 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-40312 is classified as a Server-Side Request Forgery (SSRF) vulnerability in the GiveWP Donation Plugin.
To mitigate CVE-2022-40312, update the GiveWP Donation Plugin to version 2.25.2 or later.
CVE-2022-40312 affects GiveWP – Donation Plugin versions from n/a through 2.25.1.
CVE-2022-40312 could allow an attacker to perform unauthorized actions by manipulating server requests.
Yes, CVE-2022-40312 specifically affects the GiveWP Donation Plugin on WordPress.