Authora : Easy login with mobile number < 1.7.7 - Unauthenticated Privilege Escalation
criticalThe Authora : Easy login with mobile number plugin for WordPress is vulnerable to Privilege Escalation in all versions up to 1.7.7 (exclusive). This makes it possible for unauthenticated attackers to elevate their privileges by taking over other accounts, such as an administrators.
- CVSS:
- 9.8
- Affected:
- up to 1.7.7
- Fixed in:
- 1.7.7
- Disclosed:
- Jul 20, 2026