Authorization Flaw in GiveWP Plugin by StellarWP
CVE-2026-42642
5.3MEDIUM
What is CVE-2026-42642?
The GiveWP plugin by StellarWP contains a missing authorization vulnerability that allows potential exploitation due to incorrectly configured access control security levels. This flaw can lead to unauthorized access, where users may gain improper permissions, impacting the security of sensitive information. Affected versions include all versions from n/a up to and including 4.14.5, necessitating immediate attention to safeguard systems and user data.
Affected Version(s)
GiveWP 0 <= 4.14.5