Known vulnerabilities in the Donation plugin
9 security advisories have been published for the Donation plugin. Each entry below states what an attacker can do, what privilege they need, and the version the issue was fixed in.
- Donation - Broken Access Control (CVE-2026-10038) MEDIUM
- Donation - SQL Injection (CVE-2026-7619) MEDIUM
- Donation - Security Vulnerability (CVE-2026-3177) MEDIUM
- Donation - SQL Injection (CVE-2025-13001) MEDIUM
- Donation - SQL Injection (CVE-2025-11893) HIGH
- Donation - Cross-Site Scripting (XSS) (CVE-2025-5275) MEDIUM
- Donation - Cross-Site Scripting (XSS) (CVE-2024-10876) MEDIUM
- Donation - SQL Injection (CVE-2021-24554) HIGH
- Donation - Cross-Site Scripting (XSS) (CVE-2021-24531) MEDIUM