CVE-2026-15457 | Kirki Plugin up to 6.0.13 on WordPress Customizer Family path traversal
A vulnerability labeled as critical has been found in Kirki Plugin up to 6.0.13 on WordPress. This issue affects some unknown processing of the component Customizer. The manipulation of the argument Family results in path traversal.
This vulnerability is identified as CVE-2026-15457. The attack can be executed remotely. There is not any exploit available.VulDB Recent EntriesRead More