Loading HuntDB...

MiniOrange

25 Products 25 CVEs

CVE Severity Distribution (All Time)

Critical
5
High
4
Medium
12
Low
1

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 8 CVEs

Recent CVEs

View all
CVE-2023-41873 MEDIUM 6 months ago

Missing Authorization vulnerability in miniOrange SAML SP Single Sign On allows Exploiting Incorrectly Configured Access Control Security Levels.This…

CVE-2023-37987 MEDIUM 6 months ago

Missing Authorization vulnerability in miniOrange YourMembership Single Sign On allows Exploiting Incorrectly Configured Access Control Security Leve…

CVE-2023-24375 LOW 6 months, 1 week ago

Missing Authorization vulnerability in miniOrange WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) allows Exploiting Incorrec…

CVE-2023-25455 MEDIUM 6 months, 1 week ago

Missing Authorization vulnerability in miniOrange WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) allows Exploiting Incorrec…

CVE-2023-47776 MEDIUM 6 months, 1 week ago

Missing Authorization vulnerability in miniOrange miniorange otp verification allows Exploiting Incorrectly Configured Access Control Security Levels…

CVE-2024-9863 CRITICAL 8 months ago

The UserPro plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 3.6.0 due to the insecure 'administrator' de…

CVE-2024-9862 CRITICAL 8 months ago

The Miniorange OTP Verification with Firebase plugin for WordPress is vulnerable to Arbitrary User Password Change in versions up to, and including, …

CVE-2022-4539 MEDIUM 9 months, 2 weeks ago

The Web Application Firewall plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 2.1.2. This is due to insuff…