CVE-2024-11879: Stripe Donation <= 1.2.5 - Authenticated (Contributor+) Stored Cross-Site Scripting
Rejected reason: REJECT DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-53752. Reason: This candidate is a reservation duplicate of CVE-2024-53752. Notes: All CVE users should reference CVE-2024-53752 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-11879?
CVE-2024-11879 has a high severity due to its potential for Stored Cross-Site Scripting exploitation.
How do I fix CVE-2024-11879?
To fix CVE-2024-11879, update the Stripe Donation plugin to version 1.2.6 or later.
Which versions are affected by CVE-2024-11879?
All versions of the Stripe Donation plugin up to and including 1.2.5 are affected by CVE-2024-11879.
What type of vulnerability is CVE-2024-11879?
CVE-2024-11879 is a Stored Cross-Site Scripting vulnerability.
Who is affected by CVE-2024-11879?
Users of the Stripe Donation plugin for WordPress using an affected version are at risk due to CVE-2024-11879.