High severity7.5NVD Advisory· Published Sep 5, 2022· Updated Jun 17, 2026
CVE-2022-2083
CVE-2022-2083
Description
The Simple Single Sign On WordPress plugin through 4.1.0 leaks its OAuth client_secret, which could be used by attackers to gain unauthorized access to the site.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:simple_sign_on_project:simple_sign_on:*:*:*:*:*:wordpress:*:*Range: <=4.1.0
- WordPress/Simple Single Sign Ondescription
- Range: <=4.1.0
Patches
Vulnerability mechanics
References
2- lana.codes/lanavdb/0bab7575-45fc-432d-945e-6100c35c574c/nvdExploitThird Party Advisory
- wpscan.com/vulnerability/2bbfc855-6901-462f-8a93-120d7fb5d268nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.