VendorsWP OAuthwp_oauth_serverall versions
Vulnerabilities

WP OAuth WP OAuth Server

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2022-3926
WP OAuth Server < 3.4.2 - Client Secret Regeneration via CSRF
Published 2022-12-05 · Modified
6.5EPSS 0.003
CVE-2024-31253
WordPress WP OAuth Server (OAuth Authentication) plugin <= 4.3.3 - Open Redirection vulnerability
Published 2024-04-10 · Modified
6.1EPSS 0.004
CVE-2022-3892
WP OAuth Server < 4.2.2 - Admin+ Stored XSS
Published 2022-12-05 · Modified
4.8EPSS 0.005