Attackers Exploit miniOrange SAML Flaws to Gain WordPress Admin Access
Threat actors are actively exploiting two critical authentication bypass vulnerabilities in the Xecurify miniOrange SAML 2.0 Single Sign On plugin for WordPress.…
Threat actors are actively exploiting two critical authentication bypass vulnerabilities in the Xecurify miniOrange SAML 2.0 Single Sign On plugin for WordPress.…
CVE-2026-61979 is an unauthenticated privilege escalation vulnerability in the miniOrange SAML 2.0 Single Sign On plugin for WordPress. It stems from signature…
CVE-2026-15981 is a critical authentication bypass vulnerability in the miniOrange SAML 2.0 Single Sign On plugin. It allows unauthenticated attackers to log…
The miniOrange SAML 2.0 Single Sign On plugin is a WordPress plugin that enables SAML-based authentication. It is affected by two critical…