// blog

Plain talk, not marketing speak

We write about what we build for B2B mid-market companies every day: TYPO3, WordPress and data-driven SEO. Honest, technically sound, no funnel.

// Website & Technology

Kirki Vulnerability in WordPress: 150,000 Sites at Immediate Risk

Key Points at a Glance A critical vulnerability (CVE-2026-8206, CVSS 9.8) in the WordPress plugin Kirki allows unauthorized takeover of admin accounts. Versions 6.0.0 through 6.0.6 are affected. On June 2, 2026, Wordfence recorded over 222 attack attempts within 24 hours. Update to version 6

Dennis Hüttner
Dennis Hüttner