CVE-2026-97637 | parorrey JSON API Auth Plugin up to 3.1.2 on WordPress Auth Controller Auth.php wp_generate_auth_cookie insecure improper authentication
A vulnerability identified as critical has been detected in parorrey JSON API Auth Plugin up to 3.1.2 on WordPress. Affected by this vulnerability is the function wp_generate_auth_cookie of the file Auth.php of the component Auth Controller. Performing a manipulation of the argument insecure results in improper authentication.
This vulnerability is known as CVE-2026-97637. Remote exploitation of the attack is possible. No exploit is available.VulDB Recent EntriesRead More