cleantalk
Vulnerabilities and Security Researches

WP Directory Kit, CVE-2026-39531

CVE, Research URL

CVE-2026-39531

Application

WP Directory Kit

Published on
May 21, 2026
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Wp Directory Kit WP Directory Kit allows Blind SQL Injection. This issue affects WP Directory Kit: from n/a through 1.5.0.
Affected versions
max 1.5.1.
Status
vulnerable