The Collection/miniOrange OAuth 2.0 Server/Provider/miniOrange OAuth Server security risk
High c595f53903d673ba

miniOrange OAuth Server security risk

miniOrange OAuth 2.0 Server/Provider · miniorange-oauth-20-server · v6.1.5
Exhibit · captured render
/wp-admin/index.php
[ ATTENTION REQUIRED ] miniOrange WordPress OAuth Server Security Risk!

You are at a Security Risk for the WordPress OAuth Server Plugin. It is because you are using the free version of the plugin for JWT Signing, where new keys are not generated for each configuration and are common for all users.
You can Upgrade Now to Premium for RSA support with dynamic keys to avoid this risk.

Note: The free plugin will continue to function but will remain vulnerable to this risk.

×

Version history

Only one revision of this notice has been captured so far. We'll diff it the moment the plugin ships a new wording.