Known vulnerabilities in WP OAuth Server ( Login with WordPress )
Single Sign-On using WordPress - Login with WordPress to your application/sites using your WordPress account. [24/7 Support]
3Reported vulnerabilities
9.8Highest CVSS score
6.3.0Latest version
1,000+Active installs
What to do now
Update WP OAuth Server ( Login with WordPress ) to 6.3.1 or later.
3 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2022-34149 | Critical | 1.3% | 3.0.4 and earlier | 4.0.1 |
August 22, 2022 |
| CVE-2026-65520 | High | 0.3% | 6.2.0 and earlier | 6.2.1 |
July 28, 2026 |
| CVE-2026-19715 | Medium | 0.3% | Before 6.3.1 | 6.3.1 |
August 28, 2026 |