CVE-2025-22777

Published Jan 13, 2025

Last updated a month ago

Overview

Description
Deserialization of Untrusted Data vulnerability in GiveWP GiveWP allows Object Injection.This issue affects GiveWP: from n/a through 3.19.3.
Source
audit@patchstack.com
NVD status
Received

Risk scores

CVSS 3.1

Type
Secondary
Base score
9.8
Impact score
5.9
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity
CRITICAL

Weaknesses

audit@patchstack.com
CWE-502

Social media

Hype score
Not currently trending
  1. #Vulnerability #CVE20245932 CVE-2025-22777 (CVSS 9.8): Critical Security Alert for GiveWP Plugin with 100,000 Active Installations https://t.co/4GwMAVMtDJ

    @Komodosec

    3 Feb 2025

    47 Impressions

    1 Retweet

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. CVE-2025-22777 Deserialization of Untrusted Data vulnerability in GiveWP GiveWP allows Object Injection.This issue affects GiveWP https://t.co/B9nHw7BuNr

    @VulmonFeeds

    13 Jan 2025

    6 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. CVE-2025-22777 Deserialization of Untrusted Data vulnerability in GiveWP GiveWP allows Object Injection.This issue affects GiveWP: from n/a through 3.19.3. https://t.co/NXVzPGwp3x

    @CVEnew

    13 Jan 2025

    212 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  4. [CVE-2025-22777: CRITICAL] Deserialization of Untrusted Data vulnerability in GiveWP GiveWP allows Object Injection.This issue affects GiveWP: from n/a through 3.19.3.#cybersecurity,#vulnerability https://t.co/JTaKQVfEX3 https://t.co/xtBE8mtCKo

    @CveFindCom

    13 Jan 2025

    41 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  5. 10万サイト以上が使用しているWordPressのプラグインGiveWPに重大(Critical)な脆弱性。CVE-2025-22777はCVSSスコア9.8で、認証不要のPHPオブジェクトインジェクション。データベース内の安全でないメタデータをデシリアライズできることに起因。CVE-2024-5932の修正不足。 https://t.co/3B6ehsbiEm

    @__kokumoto

    12 Jan 2025

    1534 Impressions

    2 Retweets

    12 Likes

    1 Bookmark

    1 Reply

    1 Quote

  6. CVE-2025-22777 (CVSS 9.8): Critical Security Alert for GiveWP Plugin with 100,000 Active Installations https://t.co/TZupLFh5AP

    @Dinosn

    12 Jan 2025

    2475 Impressions

    4 Retweets

    12 Likes

    3 Bookmarks

    0 Replies

    0 Quotes

  7. CVE-2025-22777 (CVSS 9.8): Critical Security Alert for GiveWP Plugin with 100,000 Active Installations Critical vulnerability in GiveWP plugin (CVE-2025-22777): Discover the details and impact of this severe security flaw. https://t.co/zFfONRq1dF

    @the_yellow_fall

    12 Jan 2025

    336 Impressions

    0 Retweets

    3 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. 🗣 CVE-2025-22777 (CVSS 9.8): Critical Security Alert for GiveWP Plugin with 100,000 Active Installations https://t.co/GMqSjeW8bN

    @fridaysecurity

    12 Jan 2025

    30 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes