CVE-2026-28149 | miniOrange Headless Single Sign On Plugin up to 1.6 on WordPress injection
A vulnerability labeled as critical has been found in miniOrange Headless Single Sign On Plugin up to 1.6 on WordPress. The impacted element is an unknown function. Such manipulation leads to injection.
This vulnerability is uniquely identified as CVE-2026-28149. The attack can be launched remotely. No exploit exists.VulDB Recent EntriesRead More