Description
WordPress Plugin Total Donations for Wordpress is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently access sensitive data, make unauthorized changes to the site's content and configuration, or take over the vulnerable site. WordPress Plugin Total Donations for Wordpress version 2.0.5 is vulnerable; prior versions may also be affected.
Remediation
DELETE the plugin
References
Related Vulnerabilities
WordPress Plugin OptionTree Cross-Site Scripting (2.5.3)
WordPress Plugin Shopello API Cross-Site Scripting (2.9.0)
WordPress Plugin Donations Privilege Escalation (1.3)
Drupal Core 8.9.x Cross-Site Scripting (8.9.0 - 8.9.15)
WordPress Plugin TheCartPress eCommerce Shopping Cart Multiple Vulnerabilities (1.3.9)