logo

CVE-2026-15981: WordPress SAML SSO Authentication Bypass (CVSS 9.8)

ID: ec9cad58-29f2-5461-aa4d-5321d2f9e91e

STIX ID: report--ec9cad58-29f2-5461-aa4d-5321d2f9e91e

Feed Name: CosmicBytez Labs

Threat Score
90/100

Date Published: 2026-07-24

Date Updated: 2026-07-25

...
...

A critical CVE-2026-15981 vulnerability (CVSS 9.8) in the SAML Single Sign On – SSO Login WordPress plugin (≤5.4.4) allows unauthenticated attackers to gain fully authenticated sessions — including administrator accounts — by submitting a SAMLResponse that triggers an OpenSSL verification error (openssl_verify() returning -1) which the plugin incorrectly treats as a valid signature. A sibling flaw (CVE-2026-15013) enables an algorithm-confusion attack (treating an RSA key as an HMAC secret), together resulting in a complete signature validation breakdown; immediate patching to versions >5.4.4 or disabling the plugin and applying access restrictions are recommended.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.