Simple Sign On Project maintains a single-purpose authentication and session-management product where the observed vulnerability signal centers on cleartext transmission of sensitive authentication credentials and session data. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Simple Sign On Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-2083HIGH The Simple Single Sign On WordPress plugin through 4.1.0 leaks its OAuth client_secret, which could be used by attackers to gain unauthorized access to the site. | Sep 5, 2022 | 7.5 | 25 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Simple Sign On Project.
Media articles that mention a CVE ID that affects a product developed by Simple Sign On Project — matched by CVE ID, not by vendor name.