CVE-2026-28148 | miniOrange Headless Single Sign On Plugin up to 1.6 on WordPress improper authentication
A vulnerability classified as critical was found in miniOrange Headless Single Sign On Plugin up to 1.6 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation results in improper authentication.
This vulnerability is identified as CVE-2026-28148. The attack can be executed remotely. There is not any exploit available.VulDB Recent EntriesRead More