Known CVE
Give WP Plugin < 3.19.0 - Cross-Site Scripting
The plugin does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.
CVE-2024-11921
High2024CVSS 7.1CWE-79
cve2024 · wordpress · wp · wp-plugin · give · xss · authenticated · vuln
Verified scans run this check after you prove you own the site.
All known CVEsView the checks catalogNational Vulnerability Database
Scan a website