Vulnerability Details CVE-2026-5343
Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal SAML SSO - Service Provider allows Privilege Escalation.
This issue affects SAML SSO - Service Provider: from 0.0.0 before 3.1.4.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 13.4%
CVSS Severity
CVSS v3 Score 7.4
Products affected by CVE-2026-5343
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.1
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.10
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.11
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.12
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.13
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.14
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.15
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.16
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.17
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.18
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.19
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.2
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.20
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.21
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.22
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.3
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.4
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.5
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.6
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.7
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.8
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.0.9
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.1.0
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.1.1
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.1.2
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:3.1.3
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.0
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.1
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.2
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.3
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.4
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.5
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.6
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.7
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.8
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.9
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.91
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.92
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.93
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.94
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.95
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.96
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.97
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.98
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.99
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.991
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.992
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.993
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.994
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-1.995
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-2.0
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-2.1
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-2.2
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-2.3
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-2.4
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-2.5
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-2.51
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-2.52
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-2.53
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-2.54
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-2.55
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-2.56
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-2.60
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-2.61
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-2.70
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-2.71
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:7.x-2.72
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-1.0
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-1.1
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-1.10
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-1.11
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-1.12
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-1.121
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-1.122
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-1.2
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-1.3
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-1.4
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-1.5
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-1.6
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-1.7
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-1.8
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-1.9
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.0
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.1
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.11
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.12
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.13
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.14
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.15
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.16
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.17
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.18
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.19
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.20
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.21
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.22
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.23
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.24
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.25
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.26
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.27
-
cpe:2.3:a:miniorange:saml_sso_-_service_provider:8.x-2.28