plugin

Login With Google Vulnerabilities

1 known security issue reported for the Login With Google WordPress plugin. Most recent disclosed Aug 13, 2026.

1 critical

Running Login With Google on your site? Check whether your installed version is affected.

Scan your site free

Log in with Google <= 1.4.2 - Authentication Bypass

critical

The Log in with Google plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 1.4.2. This makes it possible for unauthenticated attackers to bypass authentication and access other user's accounts, including administrators.

CVSS:
9.8
Affected:
up to 1.4.2
Fixed in:
1.4.3
Disclosed:
Aug 13, 2026

CVE-2026-28185 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database