SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-65464

MEDIUM · CVSS 5.4 EPSS 0.10%

Source: NVD + CISA KEV + EPSS · Published 2026-07-23 · Last synced 2026-08-22

CyberRota Analysis

AI-Generated

An unauthenticated Cross Site Request Forgery (CSRF) vulnerability exists in GiveWP versions up to 4.16.3, allowing attackers to perform actions on behalf of users without their consent. This could lead to unauthorized transactions or changes in user settings, potentially compromising user accounts and data integrity. Organizations using affected versions should prioritize remediation to mitigate the risk of exploitation.

CVE
CVE-2026-65464
Severity
MEDIUM
CVSS
5.4
EPSS
0.10%

Original NVD Description

Unauthenticated Cross Site Request Forgery (CSRF) in GiveWP <= 4.16.3 versions.