Critical severity9.8NVD Advisory· Published Jul 10, 2026· Updated Jul 21, 2026
CVE-2026-57807
CVE-2026-57807
Description
Authentication Bypass Using an Alternate Path or Channel vulnerability in miniOrange Security Software Pvt Ltd. OAuth Single Sign On - SSO (OAuth Client) allows Password Recovery Exploitation.
This issue affects OAuth Single Sign On - SSO (OAuth Client): from n/a through 38.5.8.
Affected products
2- Range: <=38.5.8
- Range: <=38.5.8
Patches
Vulnerability mechanics
References
1News mentions
1- ⚡ Weekly Recap: Rogue AI Models, $88M Bitcoin Theft, Water-System Attacks and Dangling DNS HijacksThe Hacker News · Aug 3, 2026