« Volver al listado

Loginpress

Loginpress PRO: vulnerabilidades y CVE

Loginpress PRO tiene 7 vulnerabilidades publicadas, 4 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE7
Últimos 12 meses4
Críticas2
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2026-12598Alta (8.1)0.56%—10 jul 2026
The LoginPress Pro plugin for WordPress is vulnerable to authentication bypass in versions up to and including 6.2.3 via the Spotify Social Login addon. This is due to the loginpress_on_spotify_login() function trusting…
CVE-2026-12597Alta (8.1)0.57%—10 jul 2026
The LoginPress Pro plugin for WordPress is vulnerable to Authentication Bypass via the GitHub OAuth callback in versions up to, and including, 6.2.3. The vulnerability exists in the loginpress_on_github_login()…
CVE-2026-12595Alta (8.1)0.56%—10 jul 2026
The LoginPress Pro plugin for WordPress is vulnerable to Authentication Bypass via Unverified OAuth Email in all versions up to and including 6.2.3. The vulnerability exists in the loginpress_on_discord_login() Discord…
CVE-2026-49058Crítica (9.8)0.48%—17 jun 2026
Unauthenticated Privilege Escalation in LoginPress Pro <= 6.2.2 versions.
CVE-2025-7444Crítica (9.8)0.55%—18 jul 2025
The LoginPress Pro plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 5.0.1. This is due to insufficient verification on the user being returned by the social login token.…
CVE-2024-32676Media (5.3)0.43%—25 abr 2024
Improper Restriction of Excessive Authentication Attempts vulnerability in LoginPress LoginPress Pro allows Removing Important Client Functionality.This issue affects LoginPress Pro: from n/a before 3.0.0.
CVE-2024-32677Media (5.3)0.53%—24 abr 2024
Missing Authorization vulnerability in LoginPress LoginPress Pro.This issue affects LoginPress Pro: from n/a before 3.0.0.