Exposure of GiveWP

Fundraising & donations, WordPress plugins
37
exposure score
7,069
sites use
0
exploited
3
critical

CVEs

20 results
CVE-2023-0224CRITICALGiveWP < 2.24.1 - Unauthenticated SQLiEPSS 3.7%CVE-2025-22777CRITICALWordPress GiveWP Plugin <= 3.19.3 - PHP Object Injection vulnerabilityEPSS 0.9%CVE-2024-11921MEDIUMGive < 3.19.0 - Reflected XSSEPSS 0.8%CVE-2023-22719MEDIUMWordPress GiveWP Plugin <= 2.25.1 is vulnerable to CSV InjectionEPSS 0.6%CVE-2024-30229HIGHWordPress Give plugin <= 3.4.2 - PHP Object Injection vulnerabilityEPSS 0.6%CVE-2023-41665HIGHWordPress GiveWP plugin <= 2.33.0 - GiveWP Manager+ Privilege Escalation vulnerabilityEPSS 0.6%CVE-2024-37099CRITICALWordPress GiveWP plugin <= 3.14.1 - Unauthenticated PHP Object Injection vulnerabilityEPSS 0.6%CVE-2022-4448MEDIUMGiveWP < 2.24.0 - Contributor+ Stored XSSEPSS 0.6%CVE-2022-40211MEDIUMWordPress GiveWP plugin <= 2.25.1 - Cross Site Scripting (XSS) via render_dropdown vulnerabilityEPSS 0.4%CVE-2023-47183MEDIUMWordPress GiveWP plugin <= 2.33.1 - Broken Access Control vulnerabilityEPSS 0.4%CVE-2023-23672MEDIUMWordPress GiveWP plugin <= 2.25.1 - Arbitrary Content Deletion vulnerabilityEPSS 0.4%CVE-2023-23668MEDIUMWordPress GiveWP Plugin <= 2.25.1 is vulnerable to Cross Site Scripting (XSS)EPSS 0.4%CVE-2024-27987HIGHWordPress Give plugin <= 3.3.1 - Reflected Cross Site Scripting (XSS) vulnerabilityEPSS 0.4%CVE-2024-35679HIGHWordPress GiveWP plugin <= 3.12.0 - Reflected Cross Site Scripting (XSS) vulnerabilityEPSS 0.3%CVE-2025-66533MEDIUMWordPress GiveWP plugin <= 4.13.1 - Arbitrary Shortocde Execution vulnerabilityEPSS 0.2%CVE-2024-47315MEDIUMWordPress GiveWP – Donation Plugin and Fundraising Platform plugin <= 3.15.1 - Cross Site Request Forgery (CSRF) vulnerabilityEPSS 0.2%CVE-2026-42678HIGHWordPress GiveWP plugin <= 4.14.5 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2026-42642MEDIUMWordPress GiveWP plugin <= 4.14.5 - Broken Access Control vulnerabilityEPSS 0.2%CVE-2026-34900HIGHWordPress GiveWP plugin <= 4.14.2 - Reflected Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2025-67467MEDIUMWordPress GiveWP plugin <= 4.13.1 - Cross Site Request Forgery (CSRF) vulnerabilityEPSS 0.1%

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →