plugin

Wp Social Media Login Vulnerabilities

1 known security issue reported for the Wp Social Media Login WordPress plugin. Most recent disclosed Aug 20, 2026.

1 critical

Running Wp Social Media Login on your site? Check whether your installed version is affected.

Scan your site free

WP Social Media Login <= 1.0.6 - Authentication Bypass to Account Takeover

critical

The WP Social Media Login plugin for WordPress is vulnerable to Authentication Bypass via the Twitter login flow in all versions up to, and including, 1.0.6. This makes it possible for unauthenticated attackers to bypass authentication and log in as other users, such as administrators.

CVSS:
9.8
(Wordfence)
Affected:
up to 1.0.6
Fix:
No patched version reported
Disclosed:
Aug 20, 2026

CVE-2026-77000 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database