CyberRota Analysis
AI-GeneratedThe vulnerability allows unauthenticated users to escalate privileges in the miniOrange OTP Verification plugin for versions up to 5.5.1, potentially granting them unauthorized access to sensitive functionalities. Organizations using this plugin should prioritize immediate remediation due to the critical severity rating, as exploitation could lead to significant security breaches.
CVE
CVE-2026-61967
Severity
CRITICAL
CVSS
9.8
EPSS
0.33%
Original NVD Description
Unauthenticated Privilege Escalation in miniorange otp verification <= 5.5.1 versions.