Hackers target WordPress sites in miniOrange authentication bypass attacks

Hackers are attempting to exploit two critical authentication bypass vulnerabilities in the miniOrange SAML 2.0 Single Sign On plugin for WordPress, BleepingComputer reports.
The flaws, tracked as CVE-2026-61979 and CVE-2026-15981, can be chained together to forge SAML responses and log in as administrators, according to security firm Patchstack.