A critical vulnerability in the Kirki – Freeform Page Builder, Website Builder & Customizer WordPress plugin is being actively exploited to take over administrator accounts on vulnerable sites. The flaw, tracked as CVE-2026-8206 and rated CVSS 9.8, affects versions 6.0.0 through 6.0.6 and stems from a password-reset REST API that accepts an attacker-supplied email address even when the target account is identified by username. By submitting a privileged username and an email address they control, an unauthenticated attacker can obtain a valid password reset link, reset the victim’s password, and seize the account. Researchers estimate roughly 150,000 sites may be exposed among more than 500,000 active installations, and Wordfence reported blocking 59 attack attempts in a 24-hour period.

See which actors are running it and whether you're in range.
10 events from the most recent confirmed update back to the earliest known activity.
Wordfence said users on its free tier were scheduled to receive firewall protection for CVE-2026-8206 on 2026-06-08. The rollout follows earlier protection for paid customers.
Security reporting said the Kirki vulnerability was being actively exploited to compromise WordPress websites worldwide. Wordfence reported blocking 59 attack attempts targeting the flaw in a 24-hour period.
Wordfence disclosed a critical unauthenticated privilege escalation vulnerability in the Kirki WordPress plugin, tracked as CVE-2026-8206 and rated CVSS 9.8. The flaw can let unauthenticated attackers take over registered accounts, including administrators, and potentially fully compromise affected sites.
Wordfence said researcher CHOIGYEONGMIN reported the Kirki WordPress plugin vulnerability through its bug bounty program and that the issue was validated in early May 2026. The flaw was later tracked as CVE-2026-8206 and affects Kirki versions 6.0.0 through 6.0.6.
Researchers linked the Funnel Builder incident to a broader WordPress plugin compromise involving malicious code embedded in multiple plugins. The embedded code could enable covert privileged account creation and administrator-level persistence.
Attackers actively exploited the Funnel Builder WordPress plugin vulnerability to inject skimming code into WooCommerce checkout pages and steal payment card and billing data. Sansec reported the payload was disguised as Google Analytics or Google Tag Manager code and communicated with attacker-controlled infrastructure over WebSocket.
FunnelKit released version 3.15.0.3 of the Funnel Builder plugin to address a critical unauthenticated vulnerability that attackers were exploiting to inject malicious JavaScript into WooCommerce checkout pages. The company also acknowledged reports of unauthorized script injection.
On 2026-05-18, the Kirki plugin maintainers patched CVE-2026-8206 in version 6.0.7. The bug allowed attackers to abuse the password reset REST API to send a valid reset link for another user to an attacker-controlled email address.
On 2026-05-15, Wordfence reported CVE-2026-8206 in the Kirki WordPress plugin to Themeum. This vendor notification preceded Themeum's release of the 6.0.7 patch three days later.
On 2026-05-09, Wordfence deployed firewall protection for Premium, Care, and Response customers against CVE-2026-8206 in the Kirki plugin. The protection targeted an unauthenticated privilege escalation issue that could enable administrator account takeover.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Correlate live exploitation activity against the software you actually run, and see where you're exposed.
6 references tracked. Mallory keeps watching after this page renders.
scworld.com
Open sourcecybersecuritynews.com
Open sourcesecurityonline.info
Open sourcearetiq.ai
Open sourcemalware.news
Open sourcecysecurity.news
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.