Vulnerabilities (CVE)

Filtered by vendor Wpo365 Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-26511 1 Wpo365 1 Wordpress \+ Azure Ad \/ Microsoft Office 365 2021-07-21 5.0 MEDIUM 7.5 HIGH
The wpo365-login plugin before v11.7 for WordPress allows use of a symmetric algorithm to decrypt a JWT token. This leads to authentication bypass.