Skip to content
The Nexus
DossierENTITY

Kirki plugin

Coverage of Kirki plugin in the Nexus archive.

Earliest in view: Jun 2 · 22:12 UTCMost recent: Jun 2 · 22:12 UTC
Co-mentioned in this coverage
Recent coverage
  • SECURITYJun 2 · 22:12 UTCBLEEPING COMPUTER
    Critical Kirki flaw exploited to hijack WordPress admin accounts

    Hackers are exploiting a critical privilege escalation vulnerability (CVE-2026-8206) in the Kirki plugin for WordPress to take over any user account, including administrators. The flaw allows unauthorized access to WordPress admin accounts through the Kirki plugin.