CRITICAL
9.8 CVE-2026-75816 Published 6 Sept 2026
WordPress Plugin Frontend Admin Auth Bypass
Worried this affects one of your servers?
The Frontend Admin plugin for WordPress is vulnerable to Authentication Bypass leading to Account Takeover in versions up to 3.29.12.
Due to insufficient authorization checks, unauthenticated attackers can overwrite any user's email address, including administrators, and take over accounts.
Reference: CVE-2026-75816 on NVD
← Back to Security News