โ† Back to Dashboard

CVE-2026-14319

HIGH NVD
CVSS Score
7.5
Severity
HIGH
Source
NVD
Published
Jul 31, 2026
Description

The GiveWP WordPress plugin before 4.16.3 does not properly restrict access to a REST API endpoint that returns recurring-donation records, allowing unauthenticated users to retrieve information about anonymous recurring donors, including their name and subscription details.

View Full Details โ† Back