CRITICAL 9.8 CVE-2026-106610 Published 10 Oct 2026

miniOrange OTP Verification Plugin Privilege Escalation Vulnerability

Worried this affects your website?

An Incorrect Privilege Assignment vulnerability has been discovered in miniOrange OTP Verification, a WordPress plugin. This flaw allows privilege escalation.

The issue affects miniOrange OTP Verification versions from n/a through 5.5.7.

  • Affected product: miniOrange OTP Verification
  • Affected versions: from n/a through 5.5.7
  • Impact: Privilege escalation

Reference: CVE-2026-106610 on NVD

← Back to Security News