PT-2026-103050 · WordPress · Givewp
CVSS v3.1
9.1
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
GiveWP versions prior to 4.16.10
Description
Improper Validation of Unsafe Equivalence in Input allows for Authentication Bypass. This occurs when the system fails to properly validate input during equivalence checks, enabling an attacker to bypass authentication mechanisms.
Recommendations
Update GiveWP to version 4.16.10 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Givewp