CVE-2026-100667 | Getgrav Login Plugin up to 3.9.6 Two-Factor Authentication Login::isAuthenticated improper authorization
A vulnerability has been found in Getgrav Login Plugin up to 3.9.6 and classified as problematic. The affected element is the function Login::isAuthenticated of the component Two-Factor Authentication. The manipulation leads to improper authorization.
This vulnerability is referenced as CVE-2026-100667. Remote exploitation of the attack is possible. No exploit is available.
The affected component should be upgraded.VulDB Recent EntriesRead More