{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreigixudpeboyk5xkyxpms2k6efnxhsqo6lp4yt2q7ooix4sv5vh34m",
"uri": "at://did:plc:iir655mcoipvnewhnkv6fb3u/app.bsky.feed.post/3mnduubdytam2"
},
"coverImage": {
"$type": "blob",
"ref": {
"$link": "bafkreihatmphx4dgd36wzdw5gtq64puvbsf7622cn3d7h7xj4wyjhzkedq"
},
"mimeType": "image/jpeg",
"size": 327797
},
"path": "/news/security/critical-kirki-flaw-exploited-to-hijack-wordpress-admin-accounts/",
"publishedAt": "2026-06-02T22:15:26.000Z",
"site": "https://www.bleepingcomputer.com",
"textContent": "\nHackers are exploiting a critical privilege escalation vulnerability (CVE-2026-8206) in the Kirki plugin for WordPress to take over any user account, including those belonging to administrators.",
"title": "Critical Kirki flaw exploited to hijack WordPress admin accounts"
}