VYPR

SAML SP Single Sign On

by WordPress

CVEs (3)

  • CVE-2026-19842HigAug 19, 2026
    risk 0.57cvss 8.8epss 0.00

    The SAML Single Sign On WordPress plugin before 5.4.7 does not verify the signature of a SAML response before storing the certificate it carries, and offers an administrator a one-click control that promotes that stored certificate to the site's trusted signing certificate,…

  • CVE-2026-61979HigAug 13, 2026
    risk 0.53cvss 8.1epss 0.00

    Unauthenticated Privilege Escalation in SAML SP Single Sign On <= 5.4.3 versions.

  • CVE-2023-41873MedDec 13, 2024
    risk 0.28cvss 4.3epss 0.00

    Missing Authorization vulnerability in miniOrange SAML SP Single Sign On allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SAML SP Single Sign On: from n/a through 5.0.4.