← Back to CVE List

CVE-2024-9820

Published: 2024-10-15T02:15Z
Last Modified: 2024-10-19T00:44Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The WP 2FA with Telegram plugin for WordPress is vulnerable to Two-Factor Authentication Bypass in versions up to, and including, 3.0. This is due to the two-factor code being stored in a cookie, which makes it possible to bypass two-factor authentication. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt