PatchSiren

AdAstraCrypto CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM AdAstraCrypto CVE published 2026-04-08

CVE-2026-39691

A Missing Authorization vulnerability in AdAstraCrypto Cryptocurrency Donation Box – Bitcoin & Crypto Donations allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Cryptocurrency Donation Box – Bitcoin & Crypto Donations: from n/a through <= 2.2.13. The vulnerability has a CVSS score of 5.3 and is classified as MEDIUM severity. Users of the plugin should verify thei [truncated]