Skip to content

Known CVE

GiveWP - PHP Object Injection

The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.14.1 via deserialization of untrusted input from the 'give_title' parameter.

CVE-2024-5932

Critical2024CVSS 9.8CWE-502

cve2024 · rce · wp · wp-plugin · wordpress · oast · givewp · vkev

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website