MiniOrange SAML 2.0 Single Sign On plugin for WordPress authentication bypass flaws (multiple vulnerabilities)
VulnerabilityFirst reported
Last updated
Happening score
H score
33
Summary
Hide ▲
Show ▼
miniOrange SAML 2.0 Single Sign On plugin for WordPress has two authentication bypass vulnerabilities that are being actively exploited and can be chained to let attackers log in as administrators on affected sites. The flaws are tracked as CVE-2026-61979 and CVE-2026-15981, and a public PoC exploit increases the risk of wider abuse.
Timeline
-
24.08.2026 22:26 2 articles · 1h ago
MiniOrange SAML 2.0 Single Sign On plugin for WordPress authentication bypass flaws (multiple vulnerabilities)
Initial DisclosureCVE-2026-61979 and CVE-2026-15981 were chained to bypass authentication in the miniOrange SAML 2.0 Single Sign On plugin for WordPress. Early exploitation attempts already show attacker interest in turning the flaw pair into administrator access on vulnerable sites.
Show sources
- Hackers target WordPress sites in miniOrange auth bypass attacks — www.bleepingcomputer.com — 24.08.2026 22:26
- Hackers target WordPress sites in miniOrange auth bypass attacks — www.bleepingcomputer.com — 24.08.2026 22:26