Vulnerabilities > Miniorange > Google Authenticator > 5.6.3

DATE CVE VULNERABILITY TITLE RISK
2023-10-20 CVE-2022-4943 Missing Authorization vulnerability in Miniorange Google Authenticator
The miniOrange's Google Authenticator plugin for WordPress is vulnerable to authorization bypass due to a missing capability check when changing plugin settings in versions up to, and including, 5.6.5.
network
low complexity
miniorange CWE-862
5.3