PT-2026-71023 · WordPress · Wp Directory Kit

·

CVE-2026-18230

·

Published

2026-08-12

·

Updated

2026-08-12

CVSS v3.1

8.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions WP Directory Kit versions prior to 1.5.6
Description An authenticated AJAX action in the WP Directory Kit WordPress plugin lacks an authorization check and fails to sanitize and escape the section parameter before incorporating it into a SQL statement. This allows any authenticated user, including those with Subscriber level privileges, to execute SQL injection attacks, which involve inserting malicious SQL code into a query to manipulate the database.
Recommendations Update WP Directory Kit to version 1.5.6 or later. As a temporary mitigation, restrict access to the affected AJAX action or avoid using the section parameter until the update is applied.

Exploit

Fix

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-18230

Affected Products

Wp Directory Kit