CVE-2018-21011: Wpcharitable Charitable

High severity, CVSS 7.5. EPSS: 1.7% chance of exploitation in the next 30 days.

The charitable plugin before 1.5.14 for WordPress has unauthorized access to user and donation details.

Affected products

Published 2019-09-09. Last modified 2026-06-17.