A critical vulnerability in SimpleHelp remote management software, tracked as CVE-2026-48558, lets unauthenticated attackers create privileged technician accounts via OIDC authentication. The flaw affects versions 5.5.15 and older and 6.0 pre-releases. SimpleHelp fixed it on June 9 with versions 5.5.16 and 6.0RC2.
Tap to vote and see what everyone thinks.
Summary by ByteBrief
Ivanti urges Sentry patch for critical bugs