Unauthenticated Broken Access Control in Kali Forms by WordPress
CVE-2026-81276
5.3MEDIUM
What is CVE-2026-81276?
An unauthenticated broken access control vulnerability exists in Kali Forms versions 2.4.23 and earlier, allowing attackers to manipulate form submissions without proper authentication. This weakness could lead to unauthorized access to sensitive actions within the plugin, posing significant security risks for affected WordPress sites.
Affected Version(s)
Kali Forms <= 2.4.23