First published: Sun Feb 23 2025(Updated: )
Insertion of Sensitive Information into Externally-Accessible File or Directory vulnerability in Matt Cromwell Give – Divi Donation Modules allows Retrieve Embedded Sensitive Data. This issue affects Give – Divi Donation Modules: from n/a through 2.0.0.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
GiveWP Donation Plugin | <=2.0.0 | |
GiveWP Donation Plugin | <=2.0.0 |
Update the WordPress Give – Divi Donation Modules plugin to the latest available version (at least 2.0.1).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-22633 is categorized as a high-severity vulnerability due to the potential exposure of sensitive information.
To fix CVE-2025-22633, update the Give – Divi Donation Modules plugin to a version above 2.0.0.
CVE-2025-22633 allows the retrieval of embedded sensitive data that could be accessed externally.
CVE-2025-22633 affects Give – Divi Donation Modules versions from release through 2.0.0.
The vendor for CVE-2025-22633 is Matt Cromwell, and it involves the Give – Divi Donation Modules product.