CVE-2018-21011: Wpcharitable Charitable
High severity, CVSS 7.5. EPSS: 1.7% chance of exploitation in the next 30 days.
The charitable plugin before 1.5.14 for WordPress has unauthorized access to user and donation details.
Affected products
- Wpcharitable Charitable: before 1.5.14 (fixed in 1.5.14)
Published 2019-09-09. Last modified 2026-06-17.