CVE-2026-100667 | Getgrav Login Plugin up to 3.9.6 Two-Factor Authentication Login::isAuthenticated improper authorization

SecurityVulns

A vulnerability has been found in Getgrav Login Plugin up to 3.9.6 and classified as problematic. The affected element is the function Login::isAuthenticated of the component Two-Factor Authentication. The manipulation leads to improper authorization.

This vulnerability is referenced as CVE-2026-100667. Remote exploitation of the attack is possible. No exploit is available.

The affected component should be upgraded.VulDB Recent EntriesRead More