Ottokit WordPress -plugin has a serious security error, thousands of users possibly affected


  • The Ottokit -Plugin was vulnerable to a critical mistake that allows the creation of new admin accounts
  • It was patched at the end of April 2025 so users had to update now
  • Threat players are looking for exposed sites

Ottokit, a popular Automation WordPress plugin, is vulnerable to an error in critical difficulty that allows threat players to take over entire sites.

The error is described as an incorrect privilege allocation error in brainstorm power that allows privilege shell. It affects all older versions of Website Builder Plugin until version 1.0.83, which was released on April 21, 2025. It is traced as CVE-2025-27007 and has a severity of 9.8/10 (critical).

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top