THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-7557 (CRITICAL 9.1) — An improper verification of cryptographic signature vulnerability in the SAML authentication module of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an unauthenticated remote attacker to bypass authentication and impersonate any user, including administrators. This vu

[NVD] CVE-2026-7557 (CRITICAL 9.1) — An improper verification of cryptographic signature vulnerability in the SAML authentication module of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an unauthenticated remote attacker to bypass authentication and impersonate any user, including administrators. This vu

mednvdPublished 2026-08-05

CVE-2026-7557 CVSS: 9.1 CRITICAL Published: 2026-08-05T16:17:09.437

An improper verification of cryptographic signature vulnerability in the SAML authentication module of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an unauthenticated remote attacker to bypass authentication and impersonate any user, including administrators. This vulnerability affects deployments with SAML single si

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-7557