Update the WordPress Doko theme to the latest available version (at least 1.1.0).
FearZzZz discovered and reported this Broken Access Control vulnerability in WordPress Doko Theme. This vulnerability has been fixed in version 1.1.0.
CrossSite Request Forgery (CSRF) leading to Arbitrary Plugin Activation/Deactivation
24.01.2022
Arbitrary File Upload vulnerability
28.11.2021