Skip to main content

Vendor/product archive

miniorange / saml_sp_single_sign_on CVEs

Beta · best-effort

3 CVEs tagged to miniorange / saml_sp_single_sign_on0 Critical, 0 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2022-4496

Published Jan 30, 2023

The SAML SSO Standard WordPress plugin version 16.0.0 before 16.0.8, SAML SSO Premium WordPress plugin version 12.0.0 before 12.1.0 and SAML SSO Premium Multisite WordPress plugin…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-6850

Published Feb 17, 2020

Utilities.php in the miniorange-saml-20-single-sign-on plugin before 4.8.84 for WordPress allows XSS via a crafted SAML XML Response to wp-login.php. This is related to the SAMLRe…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-12346

Published Jun 24, 2019

In the miniOrange SAML SP Single Sign On plugin before 4.8.73 for WordPress, the SAML Login Endpoint is vulnerable to XSS via a specially crafted SAMLResponse XML post.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1