• Hi Support Team,

    I noticed that Patchstack has disclosed a Broken Access Control vulnerability affecting Kirki (tracked as CVE-2026-57727), with affected versions reported as <= 6.1.1. According to the advisory, the issue is currently listed as having no official patch available.

    Could you please provide an update on the following?

    • Have you confirmed the reported vulnerability?
    • Is a security fix currently being developed?
    • Do you have an estimated timeline for releasing a patched version?
    • Are there any recommended mitigations that users should implement until a fix is available?

    Thank you for your time, and I look forward to your response.

Viewing 1 replies (of 1 total)
  • You are able or not to make your plugin safe???!!! Three updates and the vulnerabilty is always present!!

    Please solve the problem immediatly!

    Thanks

Viewing 1 replies (of 1 total)

You must be logged in to reply to this topic.