CVE WATCH / VULNERABILITY DETAIL

CVE-2026-104759

HIGHCVSS 8.1NVD feed

Published 10 October 2026 · tracked since 10 October 2026

Description

The WPO365 | SEAMLESS WORDPRESS + MICROSOFT INTEGRATION (WPO365 | LOGIN) plugin for WordPress is vulnerable to Authentication Bypass via OIDC Nonce Replay in all versions up to, and including, 44.1 This is due to `Id_Token_Service_Deprecated::process_openidconnect_token()` using the incompatible Wor

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-104759 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-104759

HIGHCVSS 8.1NVD feed

Published 10 October 2026 · tracked since 10 October 2026

Description

The WPO365 | SEAMLESS WORDPRESS + MICROSOFT INTEGRATION (WPO365 | LOGIN) plugin for WordPress is vulnerable to Authentication Bypass via OIDC Nonce Replay in all versions up to, and including, 44.1 This is due to `Id_Token_Service_Deprecated::process_openidconnect_token()` using the incompatible Wor

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]