Input validation vulnerability in GiveWP – Donation Plugin and Fundraising Platform 2.33.1

The Give – Donation Plugin for WordPress, up to version 2.33.0, is vulnerable to a security issue that could allow attackers to gain access to higher levels of privileges than they should have. If an attacker has already gained access to the Give Manager level privileges, they could use the plugin’s settings to change the default user role to an administrator role, giving them access to more advanced features and settings than they should have.

Detected in:

GiveWP – Donation Plugin and Fundraising Platform fixed vulnerable versions: >= * < 2.33.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.