
🚨 CRITICAL: CVE-2026-39531 | CVSS 9.3 SQL Injection in WP Directory Kit plugin (≤1.5.0). Network exploitable, no auth required. Blind SQLi allows high confidentiality impact. Patch immediately. #CVE #Vulnerability #PatchNow https://t.co/0KML4w1E10
Post summary
The tweet publicly discloses a critical SQL injection flaw in WP Directory Kit that can be exploited over the network without authentication, and urges users to apply the available patch immediately.

