CVE-2026-85984 | cyberlord92 miniOrange OTP Login and Verification and SMS Notifications Plugin Configuration mo_by_pass_login improper authentication

SecurityVulns

A vulnerability classified as critical was found in cyberlord92 miniOrange OTP Login and Verification and SMS Notifications Plugin up to 5.5.5 on WordPress. The affected element is the function mo_by_pass_login of the component Configuration. Executing a manipulation of the argument mo_wp_login_intent can lead to improper authentication.

This vulnerability is handled as CVE-2026-85984. The attack can be executed remotely. There is not any exploit available.VulDB Recent EntriesRead More