Description
The GiveWP WordPress plugin before 2.24.1 does not properly escape user input before it reaches SQL queries, which could let unauthenticated attackers perform SQL Injection attacks
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-12310 | The GiveWP WordPress plugin before 2.24.1 does not properly escape user input before it reaches SQL queries, which could let unauthenticated attackers perform SQL Injection attacks |
References
History
Fri, 13 Jun 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2025-06-13T16:07:48.744Z
Reserved: 2023-01-11T20:53:58.072Z
Link: CVE-2023-0224
Updated: 2024-08-02T05:02:44.027Z
Status : Modified
Published: 2024-01-16T16:15:10.440
Modified: 2025-06-13T16:15:24.050
Link: CVE-2023-0224
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD