Project Subscriptions
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-23814 | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 4.6.0. This makes it possible for unauthenticated attackers to extract donor names, emails, and donor id. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 08 Apr 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 4.6.0. This makes it possible for unauthenticated attackers to extract donor names, emails, and donor id. | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 4.6.0. This makes it possible for unauthenticated attackers to extract donor names, emails, and donor id. CVE-2025-47444 is a duplicate of this issue. CVE-2025-47444 is a duplicate of this issue. |
Tue, 12 Aug 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Givewp
Givewp givewp |
|
| CPEs | cpe:2.3:a:givewp:givewp:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Givewp
Givewp givewp |
Thu, 07 Aug 2025 07:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Givew
Givew donation Plugin And Fundraising Platform Wordpress Wordpress wordpress |
|
| Vendors & Products |
Givew
Givew donation Plugin And Fundraising Platform Wordpress Wordpress wordpress |
Wed, 06 Aug 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 06 Aug 2025 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 4.6.0. This makes it possible for unauthenticated attackers to extract donor names, emails, and donor id. | |
| Title | GiveWP – Donation Plugin and Fundraising Platform <= 4.6.0 - Unauthenticated Donor Data Exposure | |
| Weaknesses | CWE-200 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2026-04-08T16:59:32.063Z
Reserved: 2025-08-05T20:29:49.881Z
Link: CVE-2025-8620
Updated: 2025-08-06T19:29:52.023Z
Status : Modified
Published: 2025-08-06T10:15:35.967
Modified: 2026-04-08T18:25:21.470
Link: CVE-2025-8620
No data.
OpenCVE Enrichment
Updated: 2025-08-06T15:12:34Z
EUVD