← العودة للجدول
CVE-2026-48558
CVE-2026-48558 — SimpleHelp versions 5.5.15 and prior and 6.0 pre-release versions contain an aut
📅 2026-06-12
🔴 Critical 🔥 No NVD Vulnerability Vulnerability CVSS 10

📋 الوصف الكامل

SimpleHelp versions 5.5.15 and prior and 6.0 pre-release versions contain an authentication bypass vulnerability in the OIDC authentication flow. When OIDC authentication is configured, identity tokens submitted during login are accepted without verifying their cryptographic signature. In a vulnerable configuration, a remote, unauthenticated attacker can submit a forged token containing arbitrary

💻 الأنظمة المتأثرة

⚠️ نوع التهديد

Vulnerability

🔗 CVE ID

CVE-2026-48558

📡 المصدر

NVD

✅ الحلول والتخفيف

Update to v5.5.15

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←