From ec4c6f7c396750278d69e46066214e9803bcd723 Mon Sep 17 00:00:00 2001 From: Anais Gueyte Date: Wed, 20 Aug 2025 10:16:16 -0400 Subject: [PATCH 1/4] Adds release note --- source/releasenotes/2025-08-20-wp-saml-auth-2.2.1.md | 12 ++++++++++++ 1 file changed, 12 insertions(+) create mode 100644 source/releasenotes/2025-08-20-wp-saml-auth-2.2.1.md diff --git a/source/releasenotes/2025-08-20-wp-saml-auth-2.2.1.md b/source/releasenotes/2025-08-20-wp-saml-auth-2.2.1.md new file mode 100644 index 0000000000..c62bf0aa37 --- /dev/null +++ b/source/releasenotes/2025-08-20-wp-saml-auth-2.2.1.md @@ -0,0 +1,12 @@ +--- +title: "WP SAML Auth 2.2.1 update now available" +published_date: "2025-08-20" +categories: [action-required, wordpress, security] +--- + +Pantheon has released a new version of our [WP SAML Auth WordPress plugin](https://wordpress.org/plugins/wp-saml-auth/). This release updates the notification for a recently discovered vulnerability for those using the [SimpleSAMLphp library](https://github.com/advisories/GHSA-46r4-f8gj-xg56). + +## Action required +You are encouraged to upgrade your version of WP SAML Auth to the latest version as soon as possible so you know with certainty whether your site is vulnerable. If you see the notice in your dashboard, we recommend that you upgrade to the latest version of [SimpleSAMLphp](https://simplesamlphp.org/) immediately. + +If you have questions or concerns, [please open issues in the queue for the plugin](https://github.com/pantheon-systems/wp-saml-auth). \ No newline at end of file From 3befe5c86cc0bbb2edb373b113f575e4a8bf795d Mon Sep 17 00:00:00 2001 From: Anais Gueyte Date: Thu, 21 Aug 2025 10:27:51 -0400 Subject: [PATCH 2/4] Update filename --- source/releasenotes/2025-08-20-wp-saml-auth-221.md | 12 ++++++++++++ 1 file changed, 12 insertions(+) create mode 100644 source/releasenotes/2025-08-20-wp-saml-auth-221.md diff --git a/source/releasenotes/2025-08-20-wp-saml-auth-221.md b/source/releasenotes/2025-08-20-wp-saml-auth-221.md new file mode 100644 index 0000000000..c62bf0aa37 --- /dev/null +++ b/source/releasenotes/2025-08-20-wp-saml-auth-221.md @@ -0,0 +1,12 @@ +--- +title: "WP SAML Auth 2.2.1 update now available" +published_date: "2025-08-20" +categories: [action-required, wordpress, security] +--- + +Pantheon has released a new version of our [WP SAML Auth WordPress plugin](https://wordpress.org/plugins/wp-saml-auth/). This release updates the notification for a recently discovered vulnerability for those using the [SimpleSAMLphp library](https://github.com/advisories/GHSA-46r4-f8gj-xg56). + +## Action required +You are encouraged to upgrade your version of WP SAML Auth to the latest version as soon as possible so you know with certainty whether your site is vulnerable. If you see the notice in your dashboard, we recommend that you upgrade to the latest version of [SimpleSAMLphp](https://simplesamlphp.org/) immediately. + +If you have questions or concerns, [please open issues in the queue for the plugin](https://github.com/pantheon-systems/wp-saml-auth). \ No newline at end of file From ac2d7b62058410bb3aa535d7209777305aff90a3 Mon Sep 17 00:00:00 2001 From: Anais Gueyte Date: Thu, 21 Aug 2025 10:34:52 -0400 Subject: [PATCH 3/4] Remove wrong filename --- source/releasenotes/2025-08-20-wp-saml-auth-2.2.1.md | 12 ------------ 1 file changed, 12 deletions(-) delete mode 100644 source/releasenotes/2025-08-20-wp-saml-auth-2.2.1.md diff --git a/source/releasenotes/2025-08-20-wp-saml-auth-2.2.1.md b/source/releasenotes/2025-08-20-wp-saml-auth-2.2.1.md deleted file mode 100644 index c62bf0aa37..0000000000 --- a/source/releasenotes/2025-08-20-wp-saml-auth-2.2.1.md +++ /dev/null @@ -1,12 +0,0 @@ ---- -title: "WP SAML Auth 2.2.1 update now available" -published_date: "2025-08-20" -categories: [action-required, wordpress, security] ---- - -Pantheon has released a new version of our [WP SAML Auth WordPress plugin](https://wordpress.org/plugins/wp-saml-auth/). This release updates the notification for a recently discovered vulnerability for those using the [SimpleSAMLphp library](https://github.com/advisories/GHSA-46r4-f8gj-xg56). - -## Action required -You are encouraged to upgrade your version of WP SAML Auth to the latest version as soon as possible so you know with certainty whether your site is vulnerable. If you see the notice in your dashboard, we recommend that you upgrade to the latest version of [SimpleSAMLphp](https://simplesamlphp.org/) immediately. - -If you have questions or concerns, [please open issues in the queue for the plugin](https://github.com/pantheon-systems/wp-saml-auth). \ No newline at end of file From 7b24639a820d9137da92809527e3d12f9026fc5a Mon Sep 17 00:00:00 2001 From: Anais Gueyte Date: Wed, 7 Jan 2026 15:06:17 -0500 Subject: [PATCH 4/4] update WP SAML AUTH release note --- .../releasenotes/2025-08-20-wp-saml-auth-221.md | 16 +++++++++++++--- 1 file changed, 13 insertions(+), 3 deletions(-) diff --git a/source/releasenotes/2025-08-20-wp-saml-auth-221.md b/source/releasenotes/2025-08-20-wp-saml-auth-221.md index c62bf0aa37..55125989ee 100644 --- a/source/releasenotes/2025-08-20-wp-saml-auth-221.md +++ b/source/releasenotes/2025-08-20-wp-saml-auth-221.md @@ -1,10 +1,20 @@ --- -title: "WP SAML Auth 2.2.1 update now available" -published_date: "2025-08-20" +title: "WP SAML Auth 2.3 update now available" +published_date: "2026-01-08" categories: [action-required, wordpress, security] --- -Pantheon has released a new version of our [WP SAML Auth WordPress plugin](https://wordpress.org/plugins/wp-saml-auth/). This release updates the notification for a recently discovered vulnerability for those using the [SimpleSAMLphp library](https://github.com/advisories/GHSA-46r4-f8gj-xg56). +Pantheon has released a new version of our [WP SAML Auth WordPress plugin](https://wordpress.org/plugins/wp-saml-auth/). + +## What's New +- PHP 8.4 Compatibility: Full support for PHP 8.4 has been added. +- Updated PHP Requirements: The minimum supported PHP version has been increased to 7.4 to ensure better security and performance. +- WordPress 6.9 Compatibility: Confirmed compatibility with WordPress 6.9. +- Enhanced Configuration: Added the wp_saml_auth_internal_config filter, allowing developers to customize the OneLogin SAML configuration. +- SimpleSAMLphp 2.x Support: Improved auto-detection for SimpleSAMLphp 2.x and optimized autoloader discovery to skip redundant processes when the SimpleSAML\Auth\Simple class is already loaded. + +## Bug Fixes +Settings Page Warnings: Fixed a warning message on the plugin's settings page that appeared for users not utilizing SimpleSAML. ## Action required You are encouraged to upgrade your version of WP SAML Auth to the latest version as soon as possible so you know with certainty whether your site is vulnerable. If you see the notice in your dashboard, we recommend that you upgrade to the latest version of [SimpleSAMLphp](https://simplesamlphp.org/) immediately.