
SSO Login – Universal (OAuth + SAML) Security & Risk Analysis
wordpress.org/plugins/authressSSO Login provides user login, business authentication, SSO, Social login, and Single Sign-On for all sites.
Is SSO Login – Universal (OAuth + SAML) Safe to Use in 2026?
Generally Safe
Score 100/100SSO Login – Universal (OAuth + SAML) has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'authress' plugin v0.2.107 exhibits a generally good security posture based on the provided static analysis. All identified SQL queries utilize prepared statements, output is consistently escaped, and there are no recorded vulnerabilities in its history. The plugin also employs nonce and capability checks for its single protected entry point, which is a positive indicator of security awareness. However, a significant concern arises from the presence of an unprotected AJAX handler. This unprotected entry point represents a direct attack vector that could be exploited if it handles user-supplied input without proper validation or authorization, potentially leading to unauthorized actions or information disclosure.
Key Concerns
- Unprotected AJAX handler
SSO Login – Universal (OAuth + SAML) Security Vulnerabilities
SSO Login – Universal (OAuth + SAML) Code Analysis
Bundled Libraries
Output Escaping
SSO Login – Universal (OAuth + SAML) Attack Surface
AJAX Handlers 2
WordPress Hooks 29
Maintenance & Trust
SSO Login – Universal (OAuth + SAML) Maintenance & Trust
Maintenance Signals
Community Trust
SSO Login – Universal (OAuth + SAML) Alternatives
SAML Single Sign On – SSO Login
miniorange-saml-20-single-sign-on
SAML SSO (Single Sign On) for WordPress Login with Okta, Entra ID, Azure AD/B2C, G-Suite, Shibboleth, OneLogin, Keycloak, Salesforce [24/7 Support]
OAuth Single Sign On – SSO (OAuth Client)
miniorange-login-with-eve-online-google-facebook
WordPress SSO (Single Sign On) with Azure, Azure B2C, Cognito, Okta, Classlink, Discord, Clever, Keycloak, OAuth & OpenID Providers [24/7 SUPPORT].
Tim's Nextcloud SSO OAuth2
tims-nextcloud-sso-oauth2
Enables you to login to your WordPress site with your Nextcloud account with OAuth2
Lana Single Sign On
lana-sso
Creates the ability to login using Single Sign On via OAuth 2.0
Logto – User Authentication and Authorization
logto
Enable beautiful and secure user authentication, including passwordless, social login, single sign-on, multi-factor authentication (MFA), and more.
SSO Login – Universal (OAuth + SAML) Developer Profile
1 plugin · 10 total installs
How We Detect SSO Login – Universal (OAuth + SAML)
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/authress/templates/assets/css/login.css/wp-content/plugins/authress/templates/assets/css/main.cssauthress/login.css?ver=authress-widget/main.css?ver=HTML / DOM Fingerprints
avatar-authress