CVE-2023-23706: Miniorange WordPress Social Login And Register (discord, Google, Twitter, Linkedin)
High severity, CVSS 8.8. EPSS: 0.3% chance of exploitation in the next 30 days.
Cross-Site Request Forgery (CSRF) vulnerability in miniOrange WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) plugin <= 7.5.14 versions.
Affected products
- Miniorange WordPress Social Login And Register (discord, Google, Twitter, Linkedin): before 7.6.0 (fixed in 7.6.0)
Published 2023-05-23. Last modified 2026-06-17.