WPS Hide Login
wps-hide-login · plugin
Known security vulnerabilities for WPS Hide Login. Find out in seconds which version runs on your site with WP Lens.
7 known vulnerabilities
4 critical · 2 with public exploit code · latest Jun 10, 2024
Vulnerabilities
- Critical 9.8
The wps-hide-login plugin before 1.5.3 for WordPress has a protection bypass via wp-login.php in the Referer field.
- Critical 9.8
The wps-hide-login plugin before 1.5.3 for WordPress has an action=rp&key&login protection bypass.
- Critical 9.8
The wps-hide-login plugin before 1.5.3 for WordPress has an adminhash protection bypass.
- Critical 9.8
The wps-hide-login plugin before 1.5.3 for WordPress has an action=confirmaction protection bypass.
- High 8.8
The wps-hide-login plugin before 1.1 for WordPress has CSRF that affects saving an option value.
- Medium 5.3
WPS Hide Login <= 1.9.15.2 - Login Page Disclosure
- Low 3.7
WordPress WPS Hide Login plugin <= 1.9.11 - Secret Login Page Location Disclosure on Multisites vulnerability