CVE-2026-61979: miniOrange SAML Privilege Escalation
CVE-2026-61979 is an unauthenticated privilege escalation vulnerability in the miniOrange SAML 2.0 Single Sign On plugin for WordPress. It stems from signature…
Critical and exploited CVEs, vulnerability intelligence and remediation guidance.
CVE-2026-61979 is an unauthenticated privilege escalation vulnerability in the miniOrange SAML 2.0 Single Sign On plugin for WordPress. It stems from signature…
CVE-2026-15981 is a critical authentication bypass vulnerability in the miniOrange SAML 2.0 Single Sign On plugin. It allows unauthenticated attackers to log…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a maximum-severity vulnerability affecting Oracle HTTP Server and Oracle WebLogic Server to…
CVE-2020-14882 is a critical remote code execution vulnerability in Oracle WebLogic Server's Console component. It has been widely exploited in the wild…
CVE-2020-14883 is a critical remote code execution vulnerability in Oracle WebLogic Server's Console component. It is often chained with CVE-2020-14882 and remains…
CVE-2020-2551 is a critical remote code execution vulnerability in Oracle WebLogic Server's IIOP component. It has been exploited in the wild and…
CVE-2017-10271 is a critical remote code execution vulnerability in Oracle WebLogic Server's WLS-WSAT component. It has been exploited for years and remains…
Gitea Code Injection Vulnerability Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on…
CVE-2026-47836 was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs, malware,…
CVE-2026-47841 was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs, malware,…