CRITICAL 9.8 CVE-2026-75800 Published 12 Sept 2026

WordPress Frontegg SAML SSO Plugin Login Bypass

Worried this affects one of your servers?

The Frontegg SAML SSO WordPress plugin, up to version 1.0.1, has a critical security flaw. It does not validate the signature or issuer of SAML authentication responses, allowing unauthorized attackers to log in as any user, including administrators, and create new accounts.

This vulnerability affects all versions of the Frontegg SAML SSO WordPress plugin up to and including 1.0.1.

Reference: CVE-2026-75800 on NVD

← Back to Security News