CRITICAL 9.8 CVE-2026-84734 Published 11 Oct 2026

Mindstien Quick Login WordPress Plugin Authentication Bypass Vulnerability

Worried this affects your website?

The Mindstien Quick Login WordPress plugin through 1.0 contains an authentication bypass vulnerability.

The plugin does not correctly validate a value supplied in the request against the visitor's own session before authenticating them.

This allows unauthenticated attackers to obtain a session as the administrator account the plugin is configured with.

Reference: CVE-2026-84734 on NVD

← Back to Security News