plugin

Relais 2Fa Vulnerabilities

1 known security issue reported for the Relais 2Fa WordPress plugin. Most recent disclosed Nov 11, 2024.

1 critical

Running Relais 2Fa on your site? Check whether your installed version is affected.

Scan your site free

Relais 2FA <= 1.0 - Authentication Bypass

critical

The Relais 2FA plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.0. This is due to incorrect authentication and capability checking in the 'rl_do_ajax' function. This makes it possible for unauthenticated attackers to log in as any existing user on the site, such as an admi...

CVSS:
9.8
Affected:
up to 1.0
Fix:
No patched version reported
Disclosed:
Nov 11, 2024

CVE-2024-10245 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database