Vulnerabilities > Givewp > High

DATE CVE VULNERABILITY TITLE RISK
2023-06-15 CVE-2023-25450 Cross-Site Request Forgery (CSRF) vulnerability in Givewp
Cross-Site Request Forgery (CSRF) vulnerability in GiveWP GiveWP – Donation Plugin and Fundraising Platform plugin <= 2.25.1 versions.
network
low complexity
givewp CWE-352
8.8
2020-01-08 CVE-2019-20360 Improper Authentication vulnerability in Givewp
A flaw in Give before 2.5.5, a WordPress plugin, allowed unauthenticated users to bypass API authentication methods and access personally identifiable user information (PII) including names, addresses, IP addresses, and email addresses.
network
low complexity
givewp CWE-287
7.5