Find notable cyber news and cases, enriched with sources, timelines, and signals.

MiniOrange SAML 2.0 Single Sign On plugin for WordPress authentication bypass flaws (multiple vulnerabilities)

Vulnerability
First reported
Last updated
Happening score
H score 33
1 unique sources, 1 articles

Summary

Hide ▲

miniOrange SAML 2.0 Single Sign On plugin for WordPress has two authentication bypass vulnerabilities that are being actively exploited and can be chained to let attackers log in as administrators on affected sites. The flaws are tracked as CVE-2026-61979 and CVE-2026-15981, and a public PoC exploit increases the risk of wider abuse.

Timeline

  1. 24.08.2026 22:26 2 articles · 1h ago

    MiniOrange SAML 2.0 Single Sign On plugin for WordPress authentication bypass flaws (multiple vulnerabilities)

    Initial Disclosure

    CVE-2026-61979 and CVE-2026-15981 were chained to bypass authentication in the miniOrange SAML 2.0 Single Sign On plugin for WordPress. Early exploitation attempts already show attacker interest in turning the flaw pair into administrator access on vulnerable sites.

    Show sources