CVE-2026-18335 | themeum Kirki Plugin up to 6.2.0 on WordPress kirki_data server-side request forgery
A vulnerability described as critical has been identified in themeum Kirki Plugin up to 6.2.0 on WordPress. The affected element is an unknown function. Such manipulation of the argument kirki_data leads to server-side request forgery.
This vulnerability is documented as CVE-2026-18335. The attack can be executed remotely. There is not any exploit available.VulDB Recent EntriesRead More