CVE-2026-75800
The Frontegg SAML SSO WordPress plugin up to version 1.0.1 does not verify the signature or issuer of SAML responses, allowing attackers to log in as any user, including administrators, and create arbitrary accounts. This flaw lets unauthenticated users gain full control of the site. The vulnerability is critical with a CVSS score of 9.8.
No official fix yet. If none appears within 45 days of first tracking, this entry is removed automatically.
Who is affected
WordPress sites using the Frontegg SAML SSO plugin version 1.0.1 or earlier.
Real-world impact
An attacker could log in as any user, including administrators, and create new accounts, giving them full control over the WordPress site, its content, settings, and data.
Why this severity
The CVSS score is high because the flaw allows remote unauthenticated attackers to gain complete control—confidentiality, integrity, and availability—without any authentication or user interaction.
What to do about it
- ›Upgrade the Frontegg SAML SSO plugin to a version that verifies SAML signatures and issuer information, if such a version exists. If no newer version is available, disable the plugin or restrict SSO usage until a fix is released.
No official fix or mitigation is documented in the sources yet. Monitor the vendor advisory and apply the patch as soon as it is released.
NVD description