Known Vulnerabilities for JAY Login Register by Jayarsiech

Listed below are 10 of the newest known vulnerabilities associated with "JAY Login Register" by "Jayarsiech".

These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-105212 json ZITADEL 3.x before 3.4.14 and 4.x before 4.16.2 contains an authentication bypass in the hosted Login V1 and Login V2 UIs tha... Not Provided 2026-10-04 2026-10-05
CVE-2026-100684 json Budibase versions 3.41.0 before 3.45.0 contain an authentication bypass in the OIDC/SSO login path of @budibase/server. In ss... Not Provided 2026-09-26 2026-09-28
CVE-2026-100606 json Flowise through 3.1.4 (Enterprise/platform mode with SSO enabled) contains an authentication bypass in the SSO login path. Wh... Not Provided 2026-09-26 2026-09-28
CVE-2026-97344 json The Wp Social Login and Register Social Counter plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Avatar ... Not Provided 2026-10-03 2026-10-03
CVE-2026-93901 json The Optima Express IDX plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 8.7.5... Not Provided 2026-09-25 2026-09-25
CVE-2026-91972 json Vikunja versions before 2.6.0 fail to apply rate limiting to /api/v2 public authentication endpoints including login, registe... Not Provided 2026-09-15 2026-09-17
CVE-2026-86244 json A security vulnerability has been detected in FastAdmin up to 1.2.0.20210401_beta. Affected is the function register/login of... Not Provided 2026-09-07 2026-09-08
CVE-2026-82229 json Unauthenticated Cross Site Scripting (XSS) in WordPress Social Login and Register <= 7.8.2 versions. Not Provided 2026-08-31 2026-09-01
CVE-2026-78997 json UC Browser for Android (package com.UCMobile.intl, version 13.7.8.1314) contains a Universal Cross-Site Scripting vulnerabili... Not Provided 2026-09-08 2026-09-09
CVE-2026-75156 json Apache Airflow FAB provider versions 3.7.3 through 3.8.0 do not validate the issuer or audience of Azure AD `id_token`s durin... Not Provided 2026-09-08 2026-09-16

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report