Userswp

WordPress plugin · userswp · WordPress.org ↗
0
Critical
2
High
2
Known total
0
Unfixed
Running Userswp on your site? WP Alerts checks your installed version against every entry below and emails you only when one affects you. Free, no tracking.
Scan a site Monitor my sites →
SeverityVulnerabilityAffectedFixed inCVEPublished
HIGH
CVSS 8.1
UsersWP - Social Login < 1.5.10 - Unauthenticated Account Takeover via Unverified Provider Email
CVE.org
>=0, <1.5.10 v1.5.10 CVE-2026-86814 Sep 19, 2026
HIGH
CVSS 7.4
UsersWP < 1.2.67 - Two-Factor Authentication Bypass
CVE.org
>=0, <1.2.67 v1.2.67 CVE-2026-13690 Jul 29, 2026

Data aggregated from WPVulnerability, NVD/NIST, ENISA EUVD, CVE.org and WordPress.org. Provided as-is; verify with the plugin author before acting. Disclaimer.