Description
WordPress Plugin Donation Forms by Charitable-Donations & Fundraising Platform for WordPress is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently access the user and donation details of previous donations. WordPress Plugin Donation Forms by Charitable-Donations & Fundraising Platform for WordPress version 1.5.13 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.5.14 or latest
References
Related Vulnerabilities
WordPress Plugin Login Logout Menu Cross-Site Scripting (1.3.3)
Apache Tomcat Improper Access Control Vulnerability (CVE-2016-5388)
WordPress Plugin Xllentech English Islamic Calendar SQL Injection (2.6.7)
Moodle Improper Input Validation Vulnerability (CVE-2018-1137)
WordPress Plugin Page Flip Image Gallery 'book_id' Parameter Remote File Disclosure (0.2.2)