
CVE-2026-8096 The Kirki – Freeform Page Builder, Website Builder & Customizer plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 6.0.6. … https://www.cve.org/CVERecord?id=CVE-2026-8096
Post summary
The notice discloses an authorization bypass vulnerability in the Kirki WordPress plugin up to version 6.0.6, without providing any PoC, exploit, patch, or claim of active exploitation.
