cvemon logocvemon logo

Activity

Trending

CVE-2025-4094

Published May 21, 2025

Last updated a month ago

  1. Overview

  2. Social media

  3. References

Overview

Description
The DIGITS: WordPress Mobile Number Signup and Login WordPress plugin before 8.4.6.1 does not rate limit OTP validation attempts, making it straightforward for attackers to bruteforce them.
Source
contact@wpscan.com
NVD status
Awaiting Analysis

Social media

Hype score
Not currently trending
  1. ⚠️Vulnerabilidad crítica en complemento de WordPress ❗CVE-2025-4094 ➡️Más info: https://t.co/IaZbd3wWUs https://t.co/hGfD3hXoru

    @CERTpy

    17 Jun 2025

    167 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. CVE-2025-4094 (CVSS:9.8, CRITICAL) is Awaiting Analysis. The DIGITS: WordPress Mobile Number Signup and Login WordPress plugin before 8.4.6.1 does not rate limit OTP validation ..https://t.co/AicDAhY9EC #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    @cracbot

    26 May 2025

    6 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. CVE-2025-4094 The DIGITS: WordPress Mobile Number Signup and Login WordPress plugin before 8.4.6.1 does not rate limit OTP validation attempts, making it straightforward for attacker… https://t.co/JotytwzZJy

    @CVEnew

    21 May 2025

    381 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

References

Sources include official advisories and independent security research.

  • https://nvd.nist.gov/vuln/detail/CVE-2025-4094
  • https://wpscan.com/vulnerability/b5f0a263-644b-4954-a1f0-d08e2149edbb/
TRY INTRUDER
Intruder logo

© 2025 Intruder Systems Ltd.

AboutPrivacySitemapFeeds