What the vulnerability does
01Description
The WordPress Single Sign-On (SSO) plugin for WordPress is vulnerable to unauthorized access due to a misconfigured capability check on a function in all versions up to, and including, the *.5.3 versions of the plugin. This makes it possible for unauthenticated attackers to extract sensitive data including site content that has been restricted to certain users and/or roles.
Explanation of Vulnerability in Simple Terms
02Summary
The WordPress Single Sign-On plugin versions 18.5.3 and earlier contain an authorization flaw that allows unauthenticated attackers to read limited sensitive information over the network. The vulnerability requires no user interaction and affects the confidentiality of data accessible through the plugin. Site administrators should update to a version newer than 18.5.3.
What an attacker can do
03Attacker Capabilities
Read limited sensitive information from the plugin without authentication.
Potential impact on your site
04Site Impact
Unauthorized users can access certain sensitive data handled by the SSO plugin.
Conditions required to exploit
05Prerequisites
Network access only; no authentication or user interaction required.
Key dates
06Disclosure timeline
June 12, 2025
CVE published
April 8, 2026
Record updated