auth0/wordpress vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
GHSA-VFPX-Q664-H93MHighauth0/wordpress: Auth0 WordPress Plugin has Insufficient Entropy in Cookie EncryptionGHSA-VVG7-8RMQ-92G7Mediumauth0/wordpress: Auth0 WordPress has Improper Audience Validation via Auth0-PHP SDK DependencyGHSA-W22C-PW5M-482XLowauth0/wordpress: Auth0 Wordpress plugin Does Not Properly Handle File Types in Bulk User ImportGHSA-862M-5253-832RCriticalauth0/wordpress: Auth0 Wordpress Plugin vulnerable to Deserialization of Untrusted DataGHSA-2F4R-34M4-3W8QCriticalauth0/wordpress: Auth0 Wordpress plugin Vulnerable to Brute Force Authentication Tags of CookieStore SessionsCVE-2023-6813Mediumauth0/wordpress: Login by Auth0 plugin for WordPress vulnerable to Reflected Cross-Site Scripting

Stop the waste.
Protect your environment with Kodem.