cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-10245,https://securityvulnerability.io/vulnerability/CVE-2024-10245,Unauthenticated Attackers Can Bypass 2FA in Relais Plugin,"The Relais 2FA plugin for WordPress has a vulnerability that allows for authentication bypass due to improper authentication and capability checks in the 'rl_do_ajax' function. As a result, unauthenticated attackers can exploit this flaw to log in as any existing user on the site, including administrators, provided they have access to the user's email. This serious flaw underscores the importance of regular updates and security assessments for WordPress plugins to safeguard against unauthorized access.",Wordpress,Relais 2fa,9.8,CRITICAL,0.000910000002477318,false,,false,false,true,2024-11-18T01:34:28.000Z,true,false,false,,2024-11-12T09:30:17.585Z,0