Give
Recent Updates
Fixes
- Add role check for when cron jobs are run as a routine security hardening.
Fixes
- Improved security for ajax requests by applying nonce and role based access measures. This version requires the latest version of GiveWP Core to update.
Tweaks
- Adjusted the plugin’s settings screens code logic to work with GiveWP Core 2.5.0+ which deprecates the old methods used to register settings in previous versions of this add-on.
Tweaks
- The phone number field now displays after the email field.
- Adjusted the plugin’s settings screens code logic to work with GiveWP Core 2.5.0+ which deprecates the old methods used to register settings in previous versions of this add-on.
- Removed the outdated option to set a gateway label which is now part of GiveWP Core.
Features
- Added support for “utm_content” for deeper tracking at the content level, for example which Facebook post, or which email led to a donation.
Fixes
- Resolved conflict with the unofficial WooCommerce Mollie add-ons by updating and testing the Mollie PHP SDK hto the latest version 2.10.0.
Tweaks
- Adjusted the plugin’s settings screens code logic to work with GiveWP Core 2.5.0+ which deprecates the old methods used to register settings in previous versions of this add-on.
- Removed the outdated option to set a gateway label which is now part of GiveWP Core.
Fixes
- Resolved “INVALID_REQUEST_ERROR” and “AUTHENTICATION_ERROR” errors when connecting to Square’s API when using the advanced API key method.
Tweaks
- The Square add-on now required GiveWP 2.4.0+.
Security
- Prevent Stored XSS vulnerability in donor names by adding additional escaping to ensure security when viewing donor records in WP-Admin. We take security seriously and would like to thank GoDaddy and Sucuri for reporting and assisting with this fix. Thanks also to the WordPress Plugin Review Team for allowing a force push of all security patches to protect all Give users. For more detailed information see here: https://blog.sucuri.net/2019/05/wordpress-plugin-give-stored-xss-for-donors.html
Security
- Prevent Stored XSS vulnerability in donor names by adding additional escaping to ensure security when viewing donor records in WP-Admin. We take security seriously and would like to thank GoDaddy and Sucuri for reporting and assisting with this fix. Thanks also to the WordPress Plugin Review Team for allowing a force push of all security patches to protect all Give users. For more detailed information see here: https://blog.sucuri.net/2019/05/wordpress-plugin-give-stored-xss-for-donors.html