CVE-2026-84221: Unknown Kirki: The Kirki WordPress plugin before 6.3.0 does not escape a user-supplied identifier before using it in a SQL query,… | Rapid7 Vulnerability Database