Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
miniorange vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2022-34155
Improper Authentication vulnerability in miniOrange OAuth Single Sign On – SSO (OAuth Client) plugin allows Authentication Bypass.This issue affects OAuth Single Sign On – SSO (OAuth Client): from n/a up to and including 6.23.3.
Miniorange Oauth Single Sign On – Sso (oauth Client)
Miniorange Oauth Single Sign On
9.8
CVSSv3
CVE-2022-34858
Authentication Bypass vulnerability in miniOrange OAuth 2.0 client for SSO plugin <= 1.11.3 at WordPress.
Miniorange Oauth 2.0 Client For Sso (wordpress Plugin)
Miniorange Oauth 2.0 Client For Sso
4.3
CVSSv3
CVE-2022-0875
The Google Authenticator WordPress plugin prior to 1.0.5 does not have CSRF check when saving its settings, and does not sanitise as well as escape them, allowing malicious users to make a logged in admin change them and perform Cross-Site Scripting attacks
Unknown Google Authenticator
Miniorange Google Authenticator
4.8
CVSSv3
CVE-2022-1995
The Malware Scanner WordPress plugin prior to 4.5.2 does not sanitise and escape some of its settings, leading to malicious users with administrator privileges to store malicious Javascript code leading to Cross-Site Scripting attacks when unfiltered_html is disallowed (for examp...
Unknown Malware Scanner
Miniorange Malware Scanner
7.5
CVSSv3
CVE-2022-44589
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in miniOrange miniOrange's Google Authenticator – WordPress Two Factor Authentication – 2FA , Two Factor, OTP SMS and Email | Passwordless login.This issue affects miniOrange's Google A...
Miniorange Miniorange's Google Authenticator – Wordpress Two Factor Authentication – 2fa , Two Factor, Otp Sms And Email | Passwordless Login
Miniorange Google Authenticator
8.1
CVSSv3
CVE-2022-0229
The miniOrange's Google Authenticator WordPress plugin prior to 5.5 does not have proper authorisation and CSRF checks when handling the reconfigureMethod, and does not validate the parameters passed to it properly. As a result, unauthenticated users could delete arbitrary o...
Unknown Miniorange's Google Authenticator
Miniorange Google Authenticator
5.3
CVSSv3
CVE-2022-4943
The miniOrange's Google Authenticator plugin for WordPress is vulnerable to authorization bypass due to a missing capability check when changing plugin settings in versions up to, and including, 5.6.5. This makes it possible for unauthenticated malicious users to change the ...
Cyberlord92 Miniorange's Google Authenticator – Wordpress Two Factor Authentication – 2fa , Two Factor, Otp Sms And Email | Passwordless Login
Miniorange Google Authenticator
4.8
CVSSv3
CVE-2022-1029
The Limit Login Attempts WordPress plugin prior to 4.0.72 does not sanitise and escape some of its settings, leading to malicious users with administrator privileges to store malicious Javascript code leading to Cross-Site Scripting attacks when unfiltered_html is disallowed (for...
Unknown Limit Login Attempts
Miniorange Limit Login Attempts
6.1
CVSSv3
CVE-2019-12346
In the miniOrange SAML SP Single Sign On plugin prior to 4.8.73 for WordPress, the SAML Login Endpoint is vulnerable to XSS via a specially crafted SAMLResponse XML post.
Miniorange Saml Sp Single Sign On
4.8
CVSSv3
CVE-2022-4200
The Login with Cognito WordPress plugin up to and including 1.4.8 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for exa...
Unknown Login With Cognito
Miniorange Login With Cognito
Preferred Score:
CVSSv3
CVSSv2
CVSSv3
CVSSv4
EPSS
VMScore
Recommendations:
jasmin ransomware
CVE-2025-6110
code execution
CVE-2025-21420
reflected XSS
CVE-2025-5336
wp url shortener
CVE-2025-49113
gr-5400ax
overflow
CVE-2025-6062
letta-ai
CVE-2025-50143
Home
/
Search Results
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »