Description Insufficient state checks lead to a vector that allows to bypass 2FA checks. Remediation References CVE-2026-48896 Related Vulnerabilities WordPress Plugin WP-Polls Cross-Site Scripting (2.69) WordPress Plugin InfiniteWP Client Security Bypass (1.9.4.4) WordPress Plugin Tabs Cross-Site Scripting (1.8.0) Oracle JRE CVE-2014-0454 Vulnerability (CVE-2014-0454) Oracle Database Server CVE-2023-22096 Vulnerability (CVE-2023-22096) Severity High Classification CVE-2026-48896 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N Tags Missing Update Known Vulnerabilities