Description
Server-Side Request Forgery (SSRF) vulnerability in GiveWP GiveWP – Donation Plugin and Fundraising Platform.This issue affects GiveWP – Donation Plugin and Fundraising Platform: from n/a through 2.25.1.
References (1)
Core 1
Core References
Scores
CVSS v3
5.5
EPSS
0.0043
EPSS Percentile
34.5%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:L
Details
CWE
CWE-918
Status
published
Products (2)
givewp/givewp
< 2.25.1
GiveWP/GiveWP – Donation Plugin and Fundraising Platform
< 2.25.1
Published
Dec 18, 2023
Tracked Since
Feb 18, 2026