CVE-2023-22719: WordPress GiveWP plugin <= 2.25.1 - CSV Injection vulnerability
Published Nov 7, 2023
·Updated
A vulnerability in StellarWP GiveWP give.This issue affects GiveWP: from n/a through <= 2.25.1.
Affected Software
1 affected component
GiveWP GiveWP WordPress<=2.25.1
Remediation
Information
Update to 2.25.2 or a higher version.
Event History
Nov 7, 2023
CVE Published
via MITRE·03:41 PM
Data Sourced
via MITRE·03:41 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-22719?
CVE-2023-22719 is a vulnerability in the WordPress GiveWP Plugin <= 2.25.1 that allows CSV Injection.
2
What is the severity of CVE-2023-22719?
CVE-2023-22719 has a severity level of critical.
3
What software versions are affected by CVE-2023-22719?
The affected software versions are GiveWP: from n/a through 2.25.1.
4
How can I fix CVE-2023-22719?
To fix CVE-2023-22719, update your GiveWP Plugin to a version above 2.25.1.
5
Where can I find more information about CVE-2023-22719?
You can find more information about CVE-2023-22719 at the following link: [CVE-2023-22719](https://patchstack.com/database/vulnerability/give/wordpress-givewp-plugin-2-25-1-csv-injection-vulnerability?_s_id=cve).