The give plugin before 2.4.7 for WordPress has XSS via a donor name.Referenceshttps://wordpress.org/plugins/give/#developershttps://blog.sucuri.net/2019/05/wordpress-plugin-give-stored-xss-for-donors.htmlhttps://wpvulndb.com/vulnerabilities/9584