Vulnerabilities (CVE)

Filtered by vendor Impress Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-20627 1 Impress 1 Givewp 2020-10-26 5.0 MEDIUM 5.3 MEDIUM
The includes/gateways/stripe/includes/admin/admin-actions.php in GiveWP plugin through 2.5.9 for WordPress allows unauthenticated settings change.
CVE-2015-9342 1 Impress 1 Wp Rollback 2019-08-28 4.3 MEDIUM 6.1 MEDIUM
The wp-rollback plugin before 1.2.3 for WordPress has XSS.
CVE-2019-15317 1 Impress 1 Givewp 2019-08-26 3.5 LOW 5.4 MEDIUM
The give plugin before 2.4.7 for WordPress has XSS via a donor name.