What is CVE-2026-65441?
An unauthenticated Cross Site Scripting (XSS) vulnerability was discovered in GiveWP plugin versions up to 4.16.3. This flaw could allow a remote attacker to execute malicious scripts in a user's browser. Updating to the latest version is recommended.
Azərbaycanca: GiveWP plaginin 4.16.3 və daha əvvəlki versiyalarında autentifikasiya olunmamış Cross Site Scripting (XSS) zəifliyi aşkar edilib. Bu zəiflik uzaqdan hücumçuya istifadəçi brauzerində zərərli skript icra etməyə imkan verə bilər. Plaginin ən son versiyaya yenilənməsi tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-79
FAQ2
Which versions of the GiveWP plugin are affected by the CVE-2026-65441 vulnerability?
GiveWP plugin versions 4.16.3 and earlier are affected by this vulnerability.
How to protect against the CVE-2026-65441 vulnerability?
It is recommended to update the GiveWP plugin to the latest version.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.