Medium 5.3
2025-02-20< 4.5.0
CVE-2024-13520
Minimum safe version
4.5.0
Update to 4.5.0 or later to address 7 fixable vulnerabilities
CVE-2024-13520
CVE-2024-9165
CVE-2024-32436
WordPress Gift Vouchers Plugin <= 4.3.5 is vulnerable to Cross Site Request Forgery (CSRF)
Gift Cards (Gift Vouchers and Packages) <= 4.3.5 - Cross-Site Request Forgery in new_voucher_template.php
WordPress Gift Vouchers Plugin <= 4.3.1 is vulnerable to SQL Injection
WordPress Gift Voucher plugin <=1.0.5 - Authenticated Blind SQL Injection (SQLi) vulnerability