Unauthenticated Access Control Flaw in Nokri Theme by WordPress
CVE-2026-66691
9.8CRITICAL
What is CVE-2026-66691?
This vulnerability allows unauthenticated users to bypass access control measures in the Nokri theme, potentially exposing sensitive data or functionalities. Attackers could exploit this flaw to gain unauthorized privileges, increasing the risk of further exploitation within the WordPress environment.
Affected Version(s)
Nokri <= 1.6.6