Known Vulnerabilities for GiveWP by Liquid Web StellarWP
Listed below are 10 of the newest known vulnerabilities associated with "GiveWP" by "Liquid Web StellarWP".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-66690 json | Unauthenticated Cross Site Scripting (XSS) in GiveWP <= 4.16.5 versions. | Not Provided | 2026-08-06 | 2026-08-06 |
| CVE-2026-65464 json | Unauthenticated Cross Site Request Forgery (CSRF) in GiveWP <= 4.16.3 versions. | Not Provided | 2026-07-23 | 2026-07-23 |
| CVE-2026-65441 json | Unauthenticated Cross Site Scripting (XSS) in GiveWP <= 4.16.3 versions. | Not Provided | 2026-07-27 | 2026-07-28 |
| CVE-2026-42678 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Liquid Web / StellarWP ... | Not Provided | 2026-06-01 | 2026-06-01 |
| CVE-2026-34900 json | Unauthenticated Cross Site Scripting (XSS) in GiveWP <= 4.14.2 versions. | Not Provided | 2026-06-15 | 2026-06-15 |
| CVE-2026-14987 json | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting via... | Not Provided | 2026-07-16 | 2026-07-16 |
| CVE-2026-14319 json | The GiveWP WordPress plugin before 4.16.3 does not properly restrict access to a REST API endpoint that returns recurring-do... | Not Provided | 2026-07-31 | 2026-07-31 |
| CVE-2026-14318 json | The GiveWP WordPress plugin before 4.16.3 does not escape a donation-form template setting before outputting it in an HTML a... | Not Provided | 2026-07-30 | 2026-07-30 |
| CVE-2026-14317 json | The GiveWP WordPress plugin before 4.16.3 does not restrict the set of available payment gateways to those enabled by the ad... | Not Provided | 2026-07-31 | 2026-07-31 |
| CVE-2026-13704 json | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting via... | Not Provided | 2026-07-02 | 2026-07-02 |