Improper Validation of Unsafe Equivalence in Input vulnerability in Liquid Web / StellarWP GiveWP allows Authentication Bypass. This issue affects GiveWP: from n/a through 4.16.9.
Casky was already ahead
This CVE exploits attack patterns that Casky's 0matched skills already investigate — long before this vulnerability was disclosed. Claude's reasoning model maps these techniques to MITRE ATT&CK, so practitioners who ran these skills have already seen the threat behaviour in their findings.
CVE-2026-97196 is a critical authentication bypass vulnerability (CVSS 9.1) affecting GiveWP versions through 4.16.9, stemming from improper validation of unsafe equivalence in user input. The vulnerability allows attackers to circumvent authentication mechanisms without valid credentials, potentially gaining unauthorized access to donation systems, donor data, and administrative functions. This poses significant risk to nonprofits, charities, and organizations using GiveWP for fundraising, as threat actors could manipulate authentication logic through crafted input that exploits type juggling or equivalence checking flaws in the platform's validation routines.
While this CVE does not directly map to MITRE ATT&CK techniques in its current classification, Casky's security skills powered by Claude AI with extended reasoning would identify the attack patterns underlying this vulnerability by analyzing input manipulation tactics associated with T1110 (Brute Force), T1078 (Valid Accounts), and T1556 (Modify Authentication Process). Practitioners using Casky would observe findings related to suspicious authentication requests with malformed or type-confused input parameters, unusual login patterns that bypass normal validation checks, and access logs showing successful authentication without corresponding credential verification. The platform's 754 security skills would correlate these indicators to reveal the root cause: improper handling of PHP loose comparison operators or unsafe equivalence checks that allow attackers to authenticate as legitimate users by submitting specially crafted payloads that the validation logic incorrectly accepts as equivalent to valid credentials.
Composite risk scoring from EPSS, CISA KEV, Shodan, and GreyNoise — 21 security APIs correlated into a single Casky Risk Score. Coming in Casky Pro. Join early access →
Casky has 0 skills that investigate the attack patterns behind CVE-2026-97196. Run one and get CVSS-scored findings in 3 minutes.
Run the skill that detects this →© 2026 Casky.AI, Inc. · AI Security Investigation