Skip to main content
Loading…
    CVE-2026-1860 — The Kali Forms plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 2.4.8. This is due to the `get_items_permissions_check()` permission callbac — CVE Database · The Intelligence Room