Exploited Vulnerabilities Daily
🌐 English

Home › SimpleHelp

CVE-2026-48558: SimpleHelp SimpleHelp

EPSS5.7%No. 1393 of 1739 in KEV
CVE year2026listed the same year
Same vendor in KEV4
Same product4
FieldValue
VendorSimpleHelp
ProductSimpleHelp
NameSimpleHelp Authentication Bypass Vulnerability
Added to KEV2026-06-29
US federal due date2026-07-02
Ransomware useUnknown
CWECWE-347

CISA description

SimpleHelp contains an authentication bypass vulnerability in the OIDC authentication flow. When OIDC authentication is configured, identity tokens submitted during login are accepted without verifying their cryptographic signature. In a vulnerable configuration, a remote, unauthenticated attacker can submit a forged token containing arbitrary identity claims to obtain a fully authenticated technician session. In some configurations, this may also allow bypass of multi-factor authentication.

Other entries for this product

CVEVendor / productAddedEPSSRansomware
CVE-2024-57728SimpleHelp SimpleHelp2026-04-2464.6%Known
CVE-2024-57726SimpleHelp SimpleHelp2026-04-2466.6%Known
CVE-2024-57727SimpleHelp SimpleHelp2025-02-1396.5%Known

NVD — CVE-2026-48558

Data from CISA's Known Exploited Vulnerabilities (KEV) catalog. EPSS is FIRST's estimated probability of exploitation activity in the next 30 days, refreshed weekly. Always follow the vendor's official guidance.
About this page

A SimpleHelp SimpleHelp vulnerability added to CISA's Known Exploited Vulnerabilities catalog on 2026-06-29.