Loading market data...
← Back to CVE feed

CVE-2026-18473

UNKNOWN View on NVD ↗

Description

The WP Directory Kit WordPress plugin before 1.5.5 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by unauthenticated users.

Published: Aug 09, 2026 06:19 UTC Modified: Aug 09, 2026 06:19 UTC