CVE-2024-37510: WordPress Donation Forms by Charitable plugin <= 1.8.1.7 - Broken Access Control vulnerability
Missing Authorization vulnerability in Charitable Donations & Fundraising Team Charitable allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Charitable: from n/a through 1.8.1.7.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-37510?
CVE-2024-37510 has been classified as a high severity vulnerability due to its potential for unauthorized access.
How do I fix CVE-2024-37510?
To fix CVE-2024-37510, upgrade the Charitable plugin to version 1.8.1.8 or higher.
What type of vulnerability is CVE-2024-37510?
CVE-2024-37510 is a missing authorization vulnerability that allows access to functionalities not properly constrained by access control lists.
Which versions of Charitable are affected by CVE-2024-37510?
CVE-2024-37510 affects Charitable versions from n/a up to and including 1.8.1.7.
What impact does CVE-2024-37510 have on security?
CVE-2024-37510 can lead to unauthorized access and manipulation of donations and fundraising features, compromising the integrity of the application.