Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update the WordPress miniorange otp verification plugin to the latest available version (at least 5.5.8).
Tracking
Sign in to view the affected projects.
No advisories yet.
Sat, 10 Oct 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Incorrect Privilege Assignment vulnerability in miniOrange miniorange otp verification miniorange-otp-verification allows Privilege Escalation.This issue affects miniorange otp verification: from n/a through 5.5.7. | |
| Title | WordPress miniorange otp verification plugin <= 5.5.7 - Privilege Escalation vulnerability | |
| Weaknesses | CWE-266 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-10-10T18:09:06.421Z
Reserved: 2026-10-07T00:21:31.996Z
Link: CVE-2026-106610
No data.
Status : Received
Published: 2026-10-10T19:16:57.187
Modified: 2026-10-10T19:16:57.187
Link: CVE-2026-106610
No data.
OpenCVE Enrichment
Updated: 2026-10-10T20:00:13Z