CVE-2026-61979: WordPress SAML SP Single Sign On plugin <= 5.4.3 - Privilege Escalation vulnerability
Published Aug 13, 2026
·Updated
Unauthenticated Privilege Escalation in SAML SP Single Sign On <= 5.4.3 versions.
Affected Software
1 affected component
WordPress SAML SP Single Sign On plugin<=5.4.3
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress SAML SP Single Sign On pluginto a version that resolves this vulnerability.Fixed in 5.4.4
Event History
Aug 13, 2026
CVE Published
via MITRE·01:36 PM
Data Sourced
via MITRE·01:36 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-61979?
CVE-2026-61979 has a severity rating of 8.1, classified as high.
2
What type of vulnerability is CVE-2026-61979?
CVE-2026-61979 is an unauthenticated privilege escalation vulnerability.
3
What versions of the WordPress SAML SP Single Sign On plugin are affected by CVE-2026-61979?
CVE-2026-61979 affects versions of the WordPress SAML SP Single Sign On plugin up to and including 5.4.3.
4
How do I fix CVE-2026-61979?
To address CVE-2026-61979, update the WordPress SAML SP Single Sign On plugin to the latest version.
5
Are there any potential impacts of CVE-2026-61979?
CVE-2026-61979 can lead to unauthorized access and escalated privileges within the affected WordPress installations.