Vulnerabilities > Miniorange > Wordpress Social Login AND Register Discord Google Twitter Linkedin > 7.5.9

DATE CVE VULNERABILITY TITLE RISK
2023-06-29 CVE-2023-2982 Unspecified vulnerability in Miniorange Wordpress Social Login and Register (Discord, Google, Twitter, Linkedin)
The WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 7.6.4.
network
low complexity
miniorange
critical
9.8
2023-05-23 CVE-2023-23706 Cross-Site Request Forgery (CSRF) vulnerability in Miniorange Wordpress Social Login and Register (Discord, Google, Twitter, Linkedin)
Cross-Site Request Forgery (CSRF) vulnerability in miniOrange WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) plugin <= 7.5.14 versions.
network
low complexity
miniorange CWE-352
8.8