CVE-2026-78570 (matched: wordpress)

  • Wednesday, 26th August, 2026
  • 10:06am

A security flaw has been identified in the Total Donations plugin for WordPress, a tool many website owners use to add and manage donation features on their sites. All versions of this plugin up to and including version 2.0.5 are affected by this vulnerability. This issue allows unauthenticated attackers, meaning people who do not have any login credentials for your site, to gain full administrator-level access to your WordPress dashboard. If exploited, this could let bad actors take full control of your website, modify its content, access sensitive data stored on the site, or use your site to harm your visitors.

Source: NVD (National Vulnerability Database) — https://nvd.nist.gov/vuln/detail/CVE-2026-78570

« Back