← Back to feed
general Security Affairs

Two CVSS 9.8 Auth Bypasses in miniOrange SAML WordPress Plugin Were Exploited Before Any Database Even Listed the Paid Editions as Vulnerable

Security Affairs WordPress

Two CVSS 9.8 miniOrange SAML WordPress plugin auth bypasses were exploited while paid editions never appeared in any vulnerability database.

T1556 2 IOCs
Read the full story Security Affairs →

Related Coverage

general 58 arrested in international cybercrime crackdown The Record · Aug 25 general AnonyMousKIT PhaaS uses voice AI agents to phish iPhone passcodes BleepingComputer · Aug 25 general From tool stack to defense system: Connecting the security dots SC Media · Aug 25