Medium severity6.5NVD Advisory· Published Jan 24, 2022· Updated Jun 17, 2026
CVE-2021-24989
CVE-2021-24989
Description
The Accept Donations with PayPal WordPress plugin before 1.3.4 does not have CSRF check in place and does not ensure that the post to be deleted belongs to the plugin, allowing attackers to make a logged in admin delete arbitrary posts from the blog
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- WordPress/Accept Donations with PayPaldescription
- Range: <1.3.4
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/82c2ead1-1d3c-442a-ae68-359a4748447fnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.