Known Vulnerabilities for Red Hat Single Sign-On 7 by Red Hat
Listed below are 10 of the newest known vulnerabilities associated with "Red Hat Single Sign-On 7" by "Red Hat".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-82183 json | The OAuth Single Sign On WordPress plugin before 7.0.1 does not verify the identity assertion returned by its Steam single s... | Not Provided | 2026-09-02 | 2026-09-02 |
| CVE-2026-81031 json | IDURAR ERP CRM changes the password of whichever account a request names rather than the account making the request. The upda... | Not Provided | 2026-08-26 | 2026-08-29 |
| CVE-2026-79576 json | An issue in the Single-Sign On (SSO) component of Digital-Infrastructure v9.6.7 allows attackers to authenticate as any user,... | Not Provided | 2026-09-08 | 2026-09-08 |
| CVE-2026-77998 json | Joomla Extension - miniorange.com - Unauthenticated Authentication Bypass via SAMLResponse Parameter in miniOrange SAML SSO <... | Not Provided | 2026-08-25 | 2026-09-08 |
| CVE-2026-77995 json | Joomla Extension - miniorange.com - Arbitrary account takeover in miniOrange OAuth Client < 3.2.0, OAuth Single Sign-On – O... | Not Provided | 2026-08-24 | 2026-09-08 |
| CVE-2026-75807 json | The SAML Single Sign On – SSO Login plugin for WordPress is vulnerable to Authentication Bypass in versions up to, and incl... | Not Provided | 2026-08-29 | 2026-08-31 |
| CVE-2026-74240 json | A flaw was found in Red Hat Quay's JWT (JSON Web Token) validation for federated robot accounts and single sign-on (SSO) auth... | Not Provided | 2026-08-14 | 2026-08-20 |
| CVE-2026-73420 json | NextAuth.js provides authentication for Next.js. Prior to @auth/core 0.41.3 and next-auth 4.24.15 and 5.0.0-beta.32, the defa... | Not Provided | 2026-08-13 | 2026-08-14 |
| CVE-2026-66731 json | facil.io 0.7.5 through 0.7.6 contains a denial-of-service vulnerability in the HTTP/1.1 chunked transfer encoding parser that... | Not Provided | 2026-07-27 | 2026-07-31 |
| CVE-2026-65633 json | Improper Authentication vulnerability in team-alembic AshAuthentication allows purpose-limited JWTs to be replayed as full be... | Not Provided | 2026-08-25 | 2026-08-25 |