Medium severity6.1NVD Advisory· Published Jul 15, 2024· Updated Jun 17, 2026
CVE-2024-6289
CVE-2024-6289
Description
The WPS Hide Login WordPress plugin before 1.9.16.4 does not prevent redirects to the login page via the auth_redirect WordPress function, allowing an unauthenticated visitor to access the hidden login page.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2(expand)+ 1 more
- (no CPE)
- (no CPE)range: <1.9.16.4
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/fd6d0362-df1d-4416-b8b5-6e5d0ce84793/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.