8.8
CVSSv3

CVE-2022-42461

CVSSv4: NA | CVSSv3: 8.8 | CVSSv2: NA | VMScore: 980 | EPSS: 0.00121 | KEV: Not Included
Published: 18/11/2022 Updated: 21/11/2024

Vulnerability Summary

Broken Access Control vulnerability in miniOrange's Google Authenticator plugin <= 5.6.1 on WordPress.

Solution

Update to 5.6.2 or a higher version.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

miniorange miniorange's google authenticator (wordpress plugin)

miniorange google authenticator