← Back to feed
general SecurityWeek

WordPress Websites Targeted via MiniOrange Plugin Vulnerabilities

SecurityWeek • • WordPress

CVE-2026-61979 and CVE-2026-15981 are authentication bypass vulnerabilities affecting the MiniOrange SAML 2.0 SSO plugin.

T1556 2 IOCs
Read the full story SecurityWeek →

Related Coverage

general Hackers Use AI Agents and GodPotato Exploit to Gain Windows SYSTEM Privileges GBHackers · Oct 10 general AWS Bedrock AgentCore Flaw Allowed Attackers to Hijack AI Agents Using a Single Prompt GBHackers · Oct 10 general Co-creator of Empire Market dark web marketplace given 40-year sentence The Record · Oct 10