WordPress · Heateor Social Login · CVE-2026-57751
**Name of the Vulnerable Software and Affected Versions**
Heateor Social Login versions prior to 1.1.40
**Description**
An unauthenticated Cross Site Request Forgery (CSRF) issue exists in the Heateor Social Login plugin. CSRF is a flaw that allows an attacker to trick a victim into performing actions they did not intend to do on a web application.
**Recommendations**
Update Heateor Social Login to version 1.1.40 or later.