CRITICAL
9.8 CVE-2026-106610 Published 10 Oct 2026
miniOrange OTP Verification Plugin Privilege Escalation Vulnerability
Worried this affects your website?
An Incorrect Privilege Assignment vulnerability has been discovered in miniOrange OTP Verification, a WordPress plugin. This flaw allows privilege escalation.
The issue affects miniOrange OTP Verification versions from n/a through 5.5.7.
- Affected product: miniOrange OTP Verification
- Affected versions: from n/a through 5.5.7
- Impact: Privilege escalation
Reference: CVE-2026-106610 on NVD
← Back to Security News