Description
WordPress Plugin Donation Forms by Charitable-Donations & Fundraising Platform for WordPress is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently access the user and donation details of previous donations. WordPress Plugin Donation Forms by Charitable-Donations & Fundraising Platform for WordPress version 1.5.13 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.5.14 or latest
References
Related Vulnerabilities
CrushFTP Server URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2017-14038)
WordPress Plugin fMoblog 'id' Parameter SQL Injection (2.1)
MediaWiki Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2021-36129)
Oracle JRE CVE-2011-3544 Vulnerability (CVE-2011-3544)
WordPress Plugin Indieweb Post Kinds Cross-Site Scripting (1.3.1)