HackerFeeds

CyberSecurity News

WordPress Websites Targeted via MiniOrange Plugin Vulnerabilities

SecurityWeek
· August 25, 2026

AI summary

Vulnerabilities in the MiniOrange SAML 2.0 SSO plugin are being exploited to target WordPress websites. The vulnerabilities, identified as CVE-2026-61979 and CVE-2026-15981, are authentication bypass flaws. These issues affect the MiniOrange plugin, which is used for single sign-on functionality. The vulnerabilities pose a risk to WordPress websites that use this plugin.

Vulnerabilities mentioned

Read the full article at SecurityWeekwww.securityweek.com/wordpress-websites-targeted-via-miniorange-plugin-vulnerabilities/

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to SecurityWeek.