A privilege escalation vulnerability has been identified in the Bricksforge WordPress plugin affecting versions up to and including 3.1.8.8. The vulnerability allows subscriber-level users to escalate their privileges, potentially gaining unauthorized access to higher-level administrative functions. This type of vulnerability is particularly dangerous in WordPress environments as it can lead to full site compromise. The issue is tracked as CVE-2026-84814 and has been documented by both NVD and Patchstack. Users of the Bricksforge plugin are advised to update to a patched version immediately. The vulnerability has been assigned a high criticality rating, reflecting the significant risk it poses to affected WordPress installations.