Articles tagged SAML
-
VulnerabilityMiniOrange SAML SP Single Sign On Privilege Escalation (CVE-2026-61979)
CVE-2026-61979 is a CVSS 8.1 unauthenticated privilege escalation in a WordPress SAML SSO plugin, per VulnCheck alone.
-
VulnerabilitySAML Single Sign On – SSO Login Authentication Bypass (CVE-2026-15981)
CVE-2026-15981 is a CVSS 9.8 authentication bypass in the MiniOrange SAML SSO WordPress plugin allowing login as any user, reported exploited by VulnCheck.
-
VulnerabilityMojoX::Authentication Authentication Bypass (CVE-2026-86304)
CVE-2026-86304 is a CVSS 9.8 critical SAML authentication bypass in the Perl MojoX::Authentication module, letting an attacker forge a self-signed SAML response to log in as any user.