Netlas.io[verified]@Netlas_ioDisclosure
The tweet announces two authentication bypass vulnerabilities (CVE‑2026‑57807 and CVE‑2026‑12761) in miniOrange WordPress plugins, potentially allowing admin access, with no evidence of exploitation, PoC, or patching details.
Hugo | DevOps | Cybersecurity 🇱🇻[verified]@HugoValtersDisclosure
The tweet announces a critical authentication bypass in miniOrange's WordPress plugin (CVE‑2026‑12761) with a CVSS score of 9.8, warns of no available patch, and urges users to disable the plugin immediately.
Orizon[verified]@OrizonCyberPatch
A brief alert about the critical CVE‑2026‑12761 affecting the miniOrange plugin, highlighting the need for immediate patching, with no PoC, exploit details, or active exploitation evidence included.
DFIR Lab[verified]@DFIR_LabPatch
The post warns that CVE‑2026‑12761 in the miniOrange Social Login WordPress plugin allows unauthenticated attackers to bypass authentication and gain full admin control, urging users to apply a patch immediately.
ADK Cyber[verified]@ADKCyberDisclosure
The tweet announces a CVE affecting miniOrange Social Login, details authentication bypass and account takeover vulnerabilities, and urges sites to verify and apply available updates, linking to the NVD advisory.
ThreatAft@ThreatAftDisclosure
The post announces two critical WordPress authentication bypass CVEs with CVSS scores and directs readers to an external link for further details, focusing on disclosure rather than exploitation or patching.