The GiveWP – Donation Plugin and Fundraising Platform WordPress plugin before 2.10.0 was affected by a reflected Cross-Site Scripting vulnerability inside of the administration panel, via the 's' GET parameter on the Donors page.
| Software | From | Fixed in |
|---|---|---|
| givewp / givewp | 2.4.0 | 2.10.0 |