auth0/wordpress Security Advisories (3)
-
[CRITICAL] Auth0 Wordpress Plugin vulnerable to Deserialization of Untrusted Data
PKSA-tf6w-nm47-cmpt GHSA-862m-5253-832r
Affected version: >=5.0.0-BETA0,<=5.0.1
Reported by:
GitHub -
[CRITICAL] Auth0 Wordpress plugin Vulnerable to Brute Force Authentication Tags of CookieStore Sessions
PKSA-gs7k-12gv-v33r GHSA-2f4r-34m4-3w8q
Affected version: <5.3.0
Reported by:
GitHub -
[MEDIUM] Login by Auth0 plugin for WordPress vulnerable to Reflected Cross-Site Scripting
PKSA-xkct-3k26-sc19 CVE-2023-6813 GHSA-x6p7-44rh-m3rr
Affected version: <=4.6.0
Reported by:
GitHub