CVE-2026-16036 | miniOrange 2FA Plugin up to 6.2.6 on WordPress improper authentication

SecurityVulns

A vulnerability, which was classified as critical, was found in miniOrange 2FA Plugin up to 6.2.6 on WordPress. The impacted element is an unknown function. The manipulation results in improper authentication.

This vulnerability is reported as CVE-2026-16036. The attack can be launched remotely. No exploit exists.

You should upgrade the affected component.VulDB Recent EntriesRead More