Known Vulnerabilities for Loginpress by Wpbrigade
Listed below are 4 of the newest known vulnerabilities associated with "Loginpress" by "Wpbrigade".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-49058 json | Unauthenticated Privilege Escalation in LoginPress Pro <= 6.2.2 versions. | Not Provided | 2026-06-17 | 2026-06-17 |
| CVE-2026-12598 json | The LoginPress Pro plugin for WordPress is vulnerable to authentication bypass in versions up to and including 6.2.3 via the ... | Not Provided | 2026-07-10 | 2026-07-10 |
| CVE-2026-12597 json | The LoginPress Pro plugin for WordPress is vulnerable to Authentication Bypass via the GitHub OAuth callback in versions up t... | Not Provided | 2026-07-10 | 2026-07-10 |
| CVE-2026-12595 json | The LoginPress Pro plugin for WordPress is vulnerable to Authentication Bypass via Unverified OAuth Email in all versions up ... | Not Provided | 2026-07-10 | 2026-07-10 |
| CVE-2024-32677 json | Missing Authorization vulnerability in LoginPress LoginPress Pro.This issue affects LoginPress Pro: from n/a before 3.0.0. | Not Provided | 2024-04-24 | 2026-04-28 |
| CVE-2022-41839 json | Broken Access Control vulnerability in WordPress LoginPress plugin <= 1.6.2 on WordPress leading to unauth. changing of Opt-I... | 5.3 - MEDIUM | 2022-11-18 | 2022-11-22 |
| CVE-2022-0347 json | The LoginPress | Custom Login Page Customizer WordPress plugin before 1.5.12 does not escape the redirect-page parameter befo... | 6.1 - MEDIUM | 2022-03-07 | 2022-03-11 |
| CVE-2019-15872 json | The LoginPress plugin before 1.1.4 for WordPress has SQL injection via an import of settings. | 9.8 - CRITICAL | 2019-09-03 | 2019-09-05 |
| CVE-2019-15871 json | The LoginPress plugin before 1.1.4 for WordPress has no capability check for updates to settings. | 4.3 - MEDIUM | 2019-09-03 | 2020-08-24 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Wpbrigade | Loginpress | 1.3.1 | |||
| Application | Wpbrigade | Loginpress | 1.3.0 | |||
| Application | Wpbrigade | Loginpress | 1.2.4 | |||
| Application | Wpbrigade | Loginpress | 1.2.3 | |||
| Application | Wpbrigade | Loginpress | 1.2.2 | |||
| Application | Wpbrigade | Loginpress | 1.2.1 | |||
| Application | Wpbrigade | Loginpress | 1.2.0 | |||
| Application | Wpbrigade | Loginpress | 1.1.9 | |||
| Application | Wpbrigade | Loginpress | 1.1.8 | |||
| Application | Wpbrigade | Loginpress | 1.1.7 | |||
| Application | Wpbrigade | Loginpress | 1.1.6 | |||
| Application | Wpbrigade | Loginpress | 1.1.5 | |||
| Application | Wpbrigade | Loginpress | 1.1.4 | |||
| Application | Wpbrigade | Loginpress | 1.1.3 | |||
| Application | Wpbrigade | Loginpress | 1.1.25 | |||
| Application | Wpbrigade | Loginpress | 1.1.24 | |||
| Application | Wpbrigade | Loginpress | 1.1.23 | |||
| Application | Wpbrigade | Loginpress | 1.1.22 | |||
| Application | Wpbrigade | Loginpress | 1.1.21 | |||
| Application | Wpbrigade | Loginpress | 1.1.20 |