Description
WordPress Plugin OneLogin SAML SSO is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently login without a password or other authentication. WordPress Plugin OneLogin SAML SSO version 2.2.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.3.0 or latest
References
Related Vulnerabilities
WordPress Plugin Page Builder:Live Composer Cross-Site Scripting (1.5.22)
Chamilo Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-4226)
WordPress Plugin Xerte Online 'save.php' Arbitrary File Upload (0.32)
WordPress Plugin Page Builder:PageLayer-Drag and Drop website builder Cross-Site Scripting (1.3.4)