Cross-Site Request Forgery Vulnerability in Melapress WP 2FA Plugin
CVE-2026-62142
8.8HIGH
What is CVE-2026-62142?
A Cross-Site Request Forgery (CSRF) vulnerability exists in the Melapress WP 2FA plugin, allowing unauthorized actions to be executed on behalf of a user. This flaw can expose users to security risks if not mitigated, as attackers may exploit this vulnerability to perform actions without user consent. It's crucial for site administrators to update to the latest version of the plugin to safeguard their sites against potential attacks.
Affected Version(s)
WP 2FA 0 <= 4.1.0