Vulnerabilities > Dueclic

DATE CVE VULNERABILITY TITLE RISK
2024-10-15 CVE-2024-9687 Authorization Bypass Through User-Controlled Key vulnerability in Dueclic WP 2FA With Telegram
The WP 2FA with Telegram plugin for WordPress is vulnerable to Authentication Bypass in versions up to, and including, 3.0.
network
low complexity
dueclic CWE-639
8.8
2024-10-15 CVE-2024-9820 Reliance on Cookies without Validation and Integrity Checking vulnerability in Dueclic WP 2FA With Telegram
The WP 2FA with Telegram plugin for WordPress is vulnerable to Two-Factor Authentication Bypass in versions up to, and including, 3.0.
network
low complexity
dueclic CWE-565
7.5