Miniorange
Miniorange Social Login AND Register: vulnerabilidades y CVE
Miniorange Social Login AND Register tiene 2 vulnerabilidades publicadas, 2 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE2
Últimos 12 meses2
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-14300 | Alta (8.1) | 0.38% | — | 29 jul 2026 | The miniOrange Social Login and Register (Discord, Google, Twitter, LinkedIn) WordPress plugin before 7.8.0 does not bind the one-time code used by its optional email-verification (Profile Completion) feature to the… |
| CVE-2026-12761 | Crítica (9.8) | 0.89% | — | 10 jul 2026 | The miniOrange Social Login and Register (Discord, Google, Twitter, LinkedIn) plugin for WordPress is vulnerable to authentication bypass leading to account takeover in versions up to and including 7.7.0. This is due to… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.
Otros productos de Miniorange
Miniorange 2FA · 12Oauth Single Sign ON · 7Google Authenticator · 7Active Directory Integration / Ldap Integration · 6Malware Scanner · 5Saml SP Single Sign ON · 5OTP Verification With Firebase · 4Wordpress Social Login AND Register · 4Wordpress Social Login AND Register (discord, Google, Twitter, Linkedin) · 3Discord Integration · 3Custom API FOR WP · 2OTP Verification · 2