Known Vulnerabilities for Miniorange Otp Verification by MiniOrange
Listed below are 6 of the newest known vulnerabilities associated with "Miniorange Otp Verification" by "MiniOrange".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-77998 json | Joomla Extension - miniorange.com - Unauthenticated Authentication Bypass via SAMLResponse Parameter in miniOrange SAML SSO <... | Not Provided | 2026-08-25 | 2026-08-25 |
| CVE-2026-61967 json | Unauthenticated Privilege Escalation in miniorange otp verification <= 5.5.1 versions. | Not Provided | 2026-08-13 | 2026-08-13 |
| CVE-2026-61957 json | Unauthenticated Cross Site Scripting (XSS) in miniorange otp verification <= 5.5.1 versions. | Not Provided | 2026-07-27 | 2026-07-28 |
| CVE-2026-16619 json | The miniOrange 2FA WordPress plugin before 6.2.8 does not correctly limit the number of second-factor verification attempts, ... | Not Provided | 2026-08-06 | 2026-08-07 |
| CVE-2026-14300 json | The miniOrange Social Login and Register (Discord, Google, Twitter, LinkedIn) WordPress plugin before 7.8.0 does not bind the... | Not Provided | 2026-07-29 | 2026-07-30 |
| CVE-2026-14245 json | The miniOrange OTP Login, Verification and SMS Notifications plugin for WordPress is vulnerable to Authentication Bypass lead... | Not Provided | 2026-07-09 | 2026-07-09 |