CVE-2026-93368 | travispluse Rename wp-login.php to anything you want Plugin up to 2.0.1 on WordPress Login wp_login_failed log sql injection

SecurityVulns

A vulnerability was found in travispluse Rename wp-login.php to anything you want Plugin up to 2.0.1 on WordPress and classified as critical. The impacted element is the function wp_login_failed of the file wp-login.php of the component Login. The manipulation of the argument log results in sql injection.

This vulnerability was named CVE-2026-93368. The attack may be performed from remote. There is no available exploit.VulDB Recent EntriesRead More