Unknown WP OAuth Server
2 known vulnerabilities in Unknown WP OAuth Server, 1 critical, with patch priority, exploit likelihood and the news covering them.
Latest vulnerabilities
- CVE-2026-82843 CVSS 9.0 critical The WP OAuth Server ( Login with WordPress ) WordPress plugin before 6.4.0 does not bind the OpenID Connect identity assertion it issues…
- CVE-2026-19715 CVSS 7.5 high The WP OAuth Server ( Login with WordPress ) WordPress plugin before 6.3.1 does not restrict access to the debug log it writes, which is…