Login by Auth0

The Auth0 plugin replaces the standard WordPress login forms with a more secure and universal authentication system. It offers over 30 social login providers, enterprise connections, passwordless connections, multifactor authentication, password policies, email validation, and brute force attack mitigation. However, by using this plugin, site authentication and profile handling are delegated to Auth0, meaning that the WordPress database won't be used to authenticate users and the default WordPress login forms will be replaced. Existing users can be migrated using multiple authentication providers.

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in Login by Auth0 4.6.0

    Fixed

    The Login by Auth0 plugin for WordPress has a security issue that allows hackers to inject harmful code into web pages. This can happen if someone clicks on a link that is designed to trick them. Thi...

    Read More
  • Input validation vulnerability in Login by Auth0 3.11.3

    Fixed

    The Login by Auth0 plugin for WordPress

    Read More
  • Input validation vulnerability in Login by Auth0 3.11.3

    Fixed

    The Auth0 plugin for WordPress (a program used to create websites) had a weakness that allowed hackers to access it. This weakness

    Read More
  • Input validation vulnerability in Login by Auth0 3.11.3

    Fixed

    The Login by Auth0 Plugin for WordPress is not secure in versions up to 4.0. This means that someone who is logged in to WordPress can inject malicious code into pages. When other users visit the page

    Read More
  • Input validation vulnerability in Login by Auth0 3.11.2

    Fixed

    The Auth0 plugin for WordPress versions 3.11.x before 3.11.3 has a security issue that could allow someone to run malicious code on a website if they are able to access the login page. This issue is c...

    Read More
  • Access violation vulnerability in Login by Auth0 3.11.3

    Fixed

    A security problem was found in the Login by Auth0 plugin for WordPress

    Read More
  • Input validation vulnerability in Login by Auth0 3.11.3

    Fixed

    A problem was found in an older version of the Login by Auth0 plugin for WordPress. This plugin uses a lot of different fields that can contain information from different places. The problem is that t...

    Read More