
🚨*CVE* CVE-2026-19714 The Simple JWT Login WordPress plugin before 3.6.8 does not validate the audience of the Google identity tokens it accepts, allowing unauthenticated users to authent… https://www.cve.org/CVERecord?id=CVE-2026-19714 ----- Traducción: CVE-2026-19714 The… https://infoflow.cloud`
Post summary
The tweet announces CVE‑2026‑19714 affecting the Simple JWT Login WordPress plugin, describing an authentication bypass due to missing audience validation on Google JWT tokens, but does not mention PoC, exploit, patch, or active exploitation.

